Учётные данные
Получить учётные данные
$ ant beta:vaults:credentials retrieveОбновить учётные данные
$ ant beta:vaults:credentials updateУдалить учётные данные
$ ant beta:vaults:credentials deleteАрхивировать учётные данные
$ ant beta:vaults:credentials archiveПроверить учётные данные
$ ant beta:vaults:credentials mcp-oauth-validateModels
beta_managed_agents_credential: object{ id, archived_at, auth, 6 more }A credential stored in a vault. Sensitive fields are never returned in responses.
A credential stored in a vault. Sensitive fields are never returned in responses.
beta_managed_agents_credential_networking_params: BetaManagedAgentsUnrestrictedCredentialNetworkingParams { type } or BetaManagedAgentsLimitedCredentialNetworkingParams { allowed_hosts, type }Substitute the secret on any host the session's Environment network policy permits egress to. The Environment's network policy is the only boundary on where the secret can reach.
Substitute the secret on any host the session's Environment network policy permits egress to. The Environment's network policy is the only boundary on where the secret can reach.
beta_managed_agents_unrestricted_credential_networking_params: object{ type }Substitute the secret on any host the session's Environment network policy permits egress to. The Environment's network policy is the only boundary on where the secret can reach.
Substitute the secret on any host the session's Environment network policy permits egress to. The Environment's network policy is the only boundary on where the secret can reach.
beta_managed_agents_limited_credential_networking_params: object{ allowed_hosts, type }Substitute the secret only on requests to the listed hosts.
Substitute the secret only on requests to the listed hosts.
Hostnames on which the secret will be substituted. Each entry is a bare hostname (api.example.com), an IPv4 address (192.0.2.1), or a *.-prefixed wildcard (*.example.com). URLs, ports, paths, and IPv6 addresses are not accepted. At most 16 entries.
beta_managed_agents_credential_validation: object{ credential_id, has_refresh_token, mcp_probe, 5 more }Result of live-probing a credential against its configured MCP server.
Result of live-probing a credential against its configured MCP server.
beta_managed_agents_credential_validation_status: "valid" or "invalid" or "unknown"Overall verdict of a credential validation probe.
Overall verdict of a credential validation probe.
beta_managed_agents_deleted_credential: object{ id, type }Confirmation of a deleted credential.
Confirmation of a deleted credential.
Unique identifier of the deleted credential.
beta_managed_agents_environment_variable_auth_response: object{ injection_location, networking, secret_name, type }Environment variable credential details. The secret value is never returned.
Environment variable credential details. The secret value is never returned.
beta_managed_agents_environment_variable_create_params: object{ networking, secret_name, secret_value, 2 more }Parameters for creating an environment variable credential.
Parameters for creating an environment variable credential.
beta_managed_agents_environment_variable_update_params: object{ type, injection_location, networking, secret_value }Parameters for updating an environment variable credential. secret_name is immutable.
Parameters for updating an environment variable credential. secret_name is immutable.
beta_managed_agents_injection_location_params: object{ body, header }Where in the outbound request the secret value may be substituted.
Where in the outbound request the secret value may be substituted.
Substitute when the placeholder appears in the request body.
Substitute when the placeholder appears in a request header value.
beta_managed_agents_injection_location_response: object{ body, header }Where in the outbound request the secret value is substituted.
Where in the outbound request the secret value is substituted.
Whether the placeholder is substituted in the request body.
Whether the placeholder is substituted in request header values.
beta_managed_agents_injection_location_update_params: object{ body, header }Updated injection location.
Updated injection location.
Substitute when the placeholder appears in the request body.
Substitute when the placeholder appears in a request header value.
beta_managed_agents_limited_credential_networking_params: object{ allowed_hosts, type }Substitute the secret only on requests to the listed hosts.
Substitute the secret only on requests to the listed hosts.
Hostnames on which the secret will be substituted. Each entry is a bare hostname (api.example.com), an IPv4 address (192.0.2.1), or a *.-prefixed wildcard (*.example.com). URLs, ports, paths, and IPv6 addresses are not accepted. At most 16 entries.
beta_managed_agents_limited_credential_networking_response: object{ allowed_hosts, type }The secret is substituted only on requests to the listed hosts.
The secret is substituted only on requests to the listed hosts.
Hostnames on which the secret will be substituted. An entry matches the request host exactly; a *.-prefixed entry matches any subdomain of the named domain but not the domain itself.
beta_managed_agents_mcp_oauth_auth_response: object{ mcp_server_url, type, expires_at, refresh }OAuth credential details for an MCP server.
OAuth credential details for an MCP server.
beta_managed_agents_mcp_oauth_create_params: object{ access_token, mcp_server_url, type, 2 more }Parameters for creating an MCP OAuth credential.
Parameters for creating an MCP OAuth credential.
beta_managed_agents_mcp_oauth_refresh_params: object{ client_id, refresh_token, token_endpoint, 3 more }OAuth refresh token parameters for creating a credential with refresh support.
OAuth refresh token parameters for creating a credential with refresh support.
beta_managed_agents_mcp_oauth_refresh_response: object{ client_id, token_endpoint, token_endpoint_auth, 2 more }OAuth refresh token configuration returned in credential responses.
OAuth refresh token configuration returned in credential responses.
beta_managed_agents_mcp_oauth_refresh_update_params: object{ refresh_token, scope, token_endpoint_auth }Parameters for updating OAuth refresh token configuration.
Parameters for updating OAuth refresh token configuration.
beta_managed_agents_mcp_oauth_update_params: object{ type, access_token, expires_at, refresh }Parameters for updating an MCP OAuth credential. The mcp_server_url is immutable.
Parameters for updating an MCP OAuth credential. The mcp_server_url is immutable.
beta_managed_agents_mcp_probe: object{ http_response, method }The failing step of an MCP validation probe.
The failing step of an MCP validation probe.
http_response: object{ body, body_truncated, content_type, status_code }An HTTP response captured during a credential validation probe.
An HTTP response captured during a credential validation probe.
Response body. May be truncated and has sensitive values scrubbed.
Whether body was truncated.
Value of the Content-Type response header.
status_code: numberHTTP status code.
HTTP status code.
The MCP method that failed (for example initialize or tools/list).
beta_managed_agents_refresh_http_response: object{ body, body_truncated, content_type, status_code }An HTTP response captured during a credential validation probe.
An HTTP response captured during a credential validation probe.
Response body. May be truncated and has sensitive values scrubbed.
Whether body was truncated.
Value of the Content-Type response header.
status_code: numberHTTP status code.
HTTP status code.
beta_managed_agents_refresh_object: object{ http_response, status }Outcome of a refresh-token exchange attempted during credential validation.
Outcome of a refresh-token exchange attempted during credential validation.
http_response: object{ body, body_truncated, content_type, status_code }An HTTP response captured during a credential validation probe.
An HTTP response captured during a credential validation probe.
Response body. May be truncated and has sensitive values scrubbed.
Whether body was truncated.
Value of the Content-Type response header.
status_code: numberHTTP status code.
HTTP status code.
status: "succeeded" or "failed" or "connect_error" or "no_refresh_token"Outcome of a refresh-token exchange attempted during credential validation.
Outcome of a refresh-token exchange attempted during credential validation.
beta_managed_agents_static_bearer_auth_response: object{ mcp_server_url, type }Static bearer token credential details for an MCP server.
Static bearer token credential details for an MCP server.
URL of the MCP server this credential authenticates against.
beta_managed_agents_static_bearer_create_params: object{ token, mcp_server_url, type }Parameters for creating a static bearer token credential.
Parameters for creating a static bearer token credential.
token: stringStatic bearer token value.
Static bearer token value.
mcp_server_url: stringURL of the MCP server this credential authenticates against.
URL of the MCP server this credential authenticates against.
beta_managed_agents_static_bearer_update_params: object{ type, token }Parameters for updating a static bearer token credential. The mcp_server_url is immutable.
Parameters for updating a static bearer token credential. The mcp_server_url is immutable.
token: optional stringUpdated static bearer token value.
Updated static bearer token value.
beta_managed_agents_token_endpoint_auth_basic_param: object{ client_secret, type }Token endpoint uses HTTP Basic authentication with client credentials.
Token endpoint uses HTTP Basic authentication with client credentials.
client_secret: stringOAuth client secret.
OAuth client secret.
beta_managed_agents_token_endpoint_auth_basic_response: object{ type }Token endpoint uses HTTP Basic authentication with client credentials.
Token endpoint uses HTTP Basic authentication with client credentials.
beta_managed_agents_token_endpoint_auth_basic_update_param: object{ type, client_secret }Updated HTTP Basic authentication parameters for the token endpoint.
Updated HTTP Basic authentication parameters for the token endpoint.
client_secret: optional stringUpdated OAuth client secret.
Updated OAuth client secret.
beta_managed_agents_token_endpoint_auth_none_param: object{ type }Token endpoint requires no client authentication.
Token endpoint requires no client authentication.
beta_managed_agents_token_endpoint_auth_none_response: object{ type }Token endpoint requires no client authentication.
Token endpoint requires no client authentication.
beta_managed_agents_token_endpoint_auth_post_param: object{ client_secret, type }Token endpoint uses POST body authentication with client credentials.
Token endpoint uses POST body authentication with client credentials.
client_secret: stringOAuth client secret.
OAuth client secret.
beta_managed_agents_token_endpoint_auth_post_response: object{ type }Token endpoint uses POST body authentication with client credentials.
Token endpoint uses POST body authentication with client credentials.
beta_managed_agents_token_endpoint_auth_post_update_param: object{ type, client_secret }Updated POST body authentication parameters for the token endpoint.
Updated POST body authentication parameters for the token endpoint.
client_secret: optional stringUpdated OAuth client secret.
Updated OAuth client secret.
beta_managed_agents_unrestricted_credential_networking_params: object{ type }Substitute the secret on any host the session's Environment network policy permits egress to. The Environment's network policy is the only boundary on where the secret can reach.
Substitute the secret on any host the session's Environment network policy permits egress to. The Environment's network policy is the only boundary on where the secret can reach.
beta_managed_agents_unrestricted_credential_networking_response: object{ type }The secret is substituted on any host the session's Environment network policy permits egress to.
The secret is substituted on any host the session's Environment network policy permits egress to.