Claude Platform Docs

Service-Account erstellen

$client->beta->organization->serviceAccounts->create(string name, ?string description, ?OrganizationRole organizationRole, ?list<AnthropicBeta> betas): ServiceAccount
POST/v1/organizations/service_accounts

Erfordert ein OAuth-Access-Token mit dem Scope org:admin, aus ant auth login --scope org:admin oder einer Workload-Identity-Federation-Regel; Admin-API-Keys werden nicht akzeptiert. Siehe WIF mit der Admin API verwalten.

Erstellt einen Service-Account.

Ein Service-Account ist eine benannte Workload-Identität, auf die Federation-Regeln abzielen. organization_role ist developer (Standard) oder admin; eine Regel darf nur dann erstellt oder neu ausgerichtet werden, um den Scope org:admin zu gewähren, wenn die organization_role des Ziels admin ist. Das Erstellen eines Service-Accounts mit der Rolle admin erfordert ein interaktives Credential (ein Benutzer-OAuth-Token oder eine Console-Sitzung) — ein Workload darf nur Service-Accounts mit der Rolle developer erstellen.

Parameters
name: string

Slug identifier (lowercase, digits, hyphens). Unique within the organization; a duplicate name returns 409.

description?:optional string

Optional free-text description.

organizationRole?:optional OrganizationRole

Org-level role. Defaults to developer.

betas?:optional list<AnthropicBeta>

Optional header to specify the beta version(s) you want to use.

Returns
class ServiceAccount { $type = 'service_account'; $id; $archivedAt; /* 8 more */ }
"service_account" type
string id

Tagged ID of the service account.

?\Datetime archivedAt

If set, this service account is archived.

?string archivedByActorID

Tagged ID (user_/svac_) of the actor that archived this service account.

\Datetime createdAt

When this service account was created.

?string createdByActorID

Tagged ID (user_/svac_) of the actor that created this service account.

?string description

Optional free-text description.

string name

Admin-chosen slug identifier.

OrganizationRole organizationRole

Org-level role. A federation rule may only be created or retargeted to grant org:admin scope when this is admin. A rule granting org:admin whose target is later demoted to developer is rejected at token exchange. Rules granting org:admin are managed in the Console.

\Datetime updatedAt

When this service account was last updated.

?string updatedByActorID

Tagged ID (user_/svac_) of the actor that last updated this service account.

Service-Account erstellen
<?php

require_once dirname(__DIR__) . '/vendor/autoload.php';

$client = new Client(apiKey: 'my-anthropic-api-key');

$betaServiceAccount = $client->beta->organization->serviceAccounts->create(
  name: 'ci-deploy-bot',
  description: 'description',
  organizationRole: 'admin',
  betas: [AnthropicBeta::MESSAGE_BATCHES_2024_09_24],
);

var_dump($betaServiceAccount);
Returns Examples
Response 200
{
  "id": "svac_01SDCCSbTxrXDpWc1phhtcfK",
  "archived_at": "2019-12-27T18:11:19.117Z",
  "archived_by_actor_id": "archived_by_actor_id",
  "created_at": "2024-10-30T23:58:27.427722Z",
  "created_by_actor_id": "created_by_actor_id",
  "description": "description",
  "name": "ci-deploy-bot",
  "organization_role": "admin",
  "type": "service_account",
  "updated_at": "2024-10-30T23:58:27.427722Z",
  "updated_by_actor_id": "updated_by_actor_id"
}