Skip to content
Console
Menu

Queues

Workflows

Getting Started

Authentication

KV Store

Get a secret

Gets a secret.

Gets a secret.

  • Path GET https://api.sylphx.com/v1/orgs/acme/projects/shop/envs/production/secrets/secret
  • Scope secrets:read
  • Effect read — nothing is written.
  • Collection secrets

#Request

FieldTypeWhat it is
namestringThe name of the secret to get. Required.

#Response

FieldTypeWhat it is
namestringorgs/{org}/projects/{project}/envs/{env}/secrets/{secret}.
uidstringsec_<cell><ulid>. Output only.
metaResourceMetaResource metadata.
specSecretSpecDesired state. Required.
statusSecretStatusObserved state. Output only.

#ResourceMeta

FieldTypeWhat it is
generationint64Increases by one on every change to spec. Output only.
etagstringStrong ETag (AIP-154): changes on any change to spec, status, or metadata. Send it back as If-Match or etag to make Update and Delete conditional; a mismatch fails with ABORTED / 409 ETAG_MISMATCH. Output only.
create_timetimestampWhen the Resource was created. Output only.
update_timetimestampWhen the Resource last changed. Output only.
delete_timetimestampSet while the Resource is being deleted. Output only.
labelsmap<string, string>Caller-writable, indexed labels (AIP-122 label rules).
annotationsmap<string, string>Caller-writable, unindexed annotations.
display_namestringCaller-writable human-readable name.
creatorstringThe principal that created the Resource. Output only.

#SecretSpec

FieldTypeWhat it is
encryption_keystringThe ENCRYPT Key the values are envelope-encrypted with; unset means the environment's default Key.
rotation_perioddurationHow often the value should be rotated; the Secret reports Ready=FALSE with reason RotationDue once the latest version is older.
deletion_protectionboolWhile true, Delete fails with DELETION_PROTECTED. Default true.

#SecretStatus

FieldTypeWhat it is
observed_generationint64The generation this status was computed from. Output only.
conditionsCondition[]Ready, Reconciling, Stalled. Output only.
latest_versionstringThe newest enabled version; what a binding without a pinned version delivers. Output only.
rotation_due_timetimestampWhen the latest version should be rotated. Output only.

#Condition

FieldTypeWhat it is
typestringThe condition type, for example Ready.
statusConditionStatusWhether the condition holds. One of true, false, unknown.
observed_generationint64The generation this observation was made against.
reasonstringA machine-readable UpperCamelCase reason.
messagestringA customer-safe human-readable message.
severitySeverityHow severe a FALSE condition is. One of info, warning, error.
transition_timetimestampWhen status last changed.

#Errors

Every error arrives in the body Errors describes.

#Examples

curl "https://api.sylphx.com/v1/orgs/acme/projects/shop/envs/production/secrets/secret" \
  -H "Authorization: Bearer $SYLPHX_API_KEY"