---
# @generated by sylphx-gen 0.1.0 from contracts@e145cc7cf1bc9605f2b27439e5e17ed76a1a2fd7e7021906a013f7565e4a0cd5. Do not edit.
title: "Create a connection provider"
description: "`connections.connection_providers.create` (POST /v1/{parent}/connection_providers): Creates a connection provider."
type: reference
product: platform
summary: "Creates a connection provider."
updated: 2026-09-28
nav: false
---

> **This method is not served on the public API.** `api.sylphx.com` does not route this call: its backend is not deployed behind the public API, or does not implement the call. This page documents the contract. It is kept out of the sidebar and of search engines.

Creates a connection provider.

**Not available yet.** Sylphx Connections is declared in the registry but no backend serves it: every call answers `501` with the problem code `UNIMPLEMENTED`.

- **Path** `POST https://api.sylphx.com/v1/orgs/acme/connection_providers`
- **Scope** `connections:admin`
- **Effect** `write` — a successful call changes state.
- **Collection** [connection_providers](/docs/api/connection_providers)
- **Query** `connection_provider_id`, `validate_only`

## Request

| Field | Type | What it is |
| --- | --- | --- |
| `parent` | `string` | The org to create in. Required. |
| `connection_provider` | `ConnectionProvider` | The connection provider to create; only spec and caller-writable metadata are read. Required. |
| `connection_provider_id` | `string` | The id of the new connection provider, `^[a-z]([a-z0-9_-]{0,61}[a-z0-9])?$`; the server assigns one when empty. |
| `validate_only` | `bool` | Validate and return the result without writing anything. |

### ConnectionProvider

| Field | Type | What it is |
| --- | --- | --- |
| `name` | `string` | `orgs/{org}/connection_providers/{connection_provider}`. |
| `meta` | `ResourceMeta` | Resource metadata. |
| `spec` | `ConnectionProviderSpec` | Desired state. Required. |

### ResourceMeta

| Field | Type | What it is |
| --- | --- | --- |
| `labels` | `map<string, string>` | Caller-writable, indexed labels (AIP-122 label rules). |
| `annotations` | `map<string, string>` | Caller-writable, unindexed annotations. |
| `display_name` | `string` | Caller-writable human-readable name. |

### ConnectionProviderSpec

| Field | Type | What it is |
| --- | --- | --- |
| `github_app` | `GitHubAppConfig` | A GitHub App. One of the `config` group. |

### GitHubAppConfig

| Field | Type | What it is |
| --- | --- | --- |
| `app_id` | `int64` | The App's numeric id. Required. |
| `slug` | `string` | The App's slug, for example `sylphx`. Required. |
| `client_id` | `string` | The App's OAuth client id. |
| `signing_key` | `string` | The imported, non-exportable SIGN Key (RS256) that signs App assertions; only the credential service may use it. Required. |
| `webhook_secret` | `string` | The Secret holding the webhook secret that verifies deliveries. |

## Response

| Field | Type | What it is |
| --- | --- | --- |
| `name` | `string` | `orgs/{org}/connection_providers/{connection_provider}`. |
| `uid` | `string` | `cnp_<cell><ulid>`. Output only. |
| `meta` | `ResourceMeta` | Resource metadata. |
| `spec` | `ConnectionProviderSpec` | Desired state. Required. |
| `status` | `ConnectionProviderStatus` | Observed state. Output only. |

### ResourceMeta

| Field | Type | What it is |
| --- | --- | --- |
| `generation` | `int64` | Increases by one on every change to `spec`. Output only. |
| `etag` | `string` | Strong ETag (AIP-154): changes on any change to spec, status, or metadata. Send it back as `If-Match` or `etag` to make Update and Delete conditional; a mismatch fails with ABORTED / 409 `ETAG_MISMATCH`. Output only. |
| `create_time` | `timestamp` | When the Resource was created. Output only. |
| `update_time` | `timestamp` | When the Resource last changed. Output only. |
| `delete_time` | `timestamp` | Set while the Resource is being deleted. Output only. |
| `labels` | `map<string, string>` | Caller-writable, indexed labels (AIP-122 label rules). |
| `annotations` | `map<string, string>` | Caller-writable, unindexed annotations. |
| `display_name` | `string` | Caller-writable human-readable name. |
| `creator` | `string` | The principal that created the Resource. Output only. |

### ConnectionProviderSpec

| Field | Type | What it is |
| --- | --- | --- |
| `github_app` | `GitHubAppConfig` | A GitHub App. One of the `config` group. |

### ConnectionProviderStatus

| Field | Type | What it is |
| --- | --- | --- |
| `observed_generation` | `int64` | The generation this status was computed from. Output only. |
| `conditions` | `Condition[]` | Ready, Reconciling, Stalled. Output only. |
| `kind` | `string` | The provider's plugin kind, for example `github_app`. Output only. |
| `connection_count` | `int32` | How many active Connections the provider has. Output only. |

### GitHubAppConfig

| Field | Type | What it is |
| --- | --- | --- |
| `app_id` | `int64` | The App's numeric id. Required. |
| `slug` | `string` | The App's slug, for example `sylphx`. Required. |
| `client_id` | `string` | The App's OAuth client id. |
| `signing_key` | `string` | The imported, non-exportable SIGN Key (RS256) that signs App assertions; only the credential service may use it. Required. |
| `webhook_secret` | `string` | The Secret holding the webhook secret that verifies deliveries. |

### Condition

| Field | Type | What it is |
| --- | --- | --- |
| `type` | `string` | The condition type, for example `Ready`. |
| `status` | `ConditionStatus` | Whether the condition holds. One of `true`, `false`, `unknown`. |
| `observed_generation` | `int64` | The generation this observation was made against. |
| `reason` | `string` | A machine-readable UpperCamelCase reason. |
| `message` | `string` | A customer-safe human-readable message. |
| `severity` | `Severity` | How severe a FALSE condition is. One of `info`, `warning`, `error`. |
| `transition_time` | `timestamp` | When `status` last changed. |

## Errors

- [`UNAUTHENTICATED`](/docs/api/errors/UNAUTHENTICATED) — No valid key or token was presented.
- [`PERMISSION_DENIED`](/docs/api/errors/PERMISSION_DENIED) — The key lacks the method's permission.
- [`UNKNOWN_FIELD`](/docs/api/errors/UNKNOWN_FIELD) — The request has a field the schema does not know.
- [`INVALID_FIELD`](/docs/api/errors/INVALID_FIELD) — A field failed validation.
- [`RESOURCE_ALREADY_EXISTS`](/docs/api/errors/RESOURCE_ALREADY_EXISTS) — A Resource with this name exists.
- [`IDEMPOTENCY_KEY_REUSED`](/docs/api/errors/IDEMPOTENCY_KEY_REUSED) — An Idempotency-Key was reused with another body.
- [`IDEMPOTENCY_IN_PROGRESS`](/docs/api/errors/IDEMPOTENCY_IN_PROGRESS) — The first call with this Idempotency-Key is still running.
- [`PLAN_LIMIT_REACHED`](/docs/api/errors/PLAN_LIMIT_REACHED) — The plan's limit is reached.

Every error arrives in the body [Errors](/docs/platform/errors) describes.

## Examples

**cURL**

```curl
curl -X POST "https://api.sylphx.com/v1/orgs/acme/connection_providers" \
  -H "Authorization: Bearer $SYLPHX_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{"spec":{}}'
```

**TypeScript**

```ts
const response = await sylphx.connections.connectionProviders.create({ connectionProvider: { spec: {} }, parent: 'orgs/acme' })
```

**Rust**

```rust
let mut req = sylphx::connections::CreateConnectionProviderRequest::default();
req.connection_provider = Some(sylphx::connections::ConnectionProvider {
    spec: Some(Default::default()),
    ..Default::default()
});
req.parent = "orgs/acme".to_string();
let response = sx.connections().connection_providers().create(req).await?;
```

**CLI**

```bash
sylphx connections connection-providers create --parent orgs/acme
```

**Terraform**

```hcl
resource "sylphx_connections_connection_provider" "connection_provider" {
  connection_provider_id = "connection_provider"
  parent                 = "orgs/acme"
  spec                   = {}
}
```

**MCP**

```json
{ "method_id": "connections.connection_providers.create", "args": {"connection_provider":{"spec":{}},"parent":"orgs/acme"} }
```
