Claude Platform Docs

颁发者

创建联合签发者
BetaFederationIssuer Beta.Organization.Federation.Issuers.Create(parameters, cancellationToken = default)
POST/v1/organizations/federation_issuers

需要具有 org:admin 作用域的 OAuth 访问令牌,可通过 ant auth login --scope org:admin 或工作负载身份联合规则获取;不接受 Admin API 密钥。请参阅使用 Admin API 管理 WIF

列出联合签发者
IssuerListPage Beta.Organization.Federation.Issuers.List(parameters, cancellationToken = default)
GET/v1/organizations/federation_issuers

需要具有 org:admin 作用域的 OAuth 访问令牌,可通过 ant auth login --scope org:admin 或工作负载身份联合规则获取;不接受 Admin API 密钥。请参阅使用 Admin API 管理 WIF

获取联合签发者
BetaFederationIssuer Beta.Organization.Federation.Issuers.Retrieve(parameters, cancellationToken = default)
GET/v1/organizations/federation_issuers/{federation_issuer_id}

需要具有 org:admin 作用域的 OAuth 访问令牌,可通过 ant auth login --scope org:admin 或工作负载身份联合规则获取;不接受 Admin API 密钥。请参阅使用 Admin API 管理 WIF

更新联合签发者
BetaFederationIssuer Beta.Organization.Federation.Issuers.Update(parameters, cancellationToken = default)
POST/v1/organizations/federation_issuers/{federation_issuer_id}

需要具有 org:admin 作用域的 OAuth 访问令牌,可通过 ant auth login --scope org:admin 或工作负载身份联合规则获取;不接受 Admin API 密钥。请参阅使用 Admin API 管理 WIF

归档联合签发者
BetaFederationIssuer Beta.Organization.Federation.Issuers.Archive(parameters, cancellationToken = default)
POST/v1/organizations/federation_issuers/{federation_issuer_id}/archive

需要具有 org:admin 作用域的 OAuth 访问令牌,可通过 ant auth login --scope org:admin 或工作负载身份联合规则获取;不接受 Admin API 密钥。请参阅使用 Admin API 管理 WIF

Models
class BetaFederationIssuer { Type = "federation_issuer"; ID; ArchivedAt; /* 12 more */ }

Registered external OIDC identity provider.

Records an external IdP the organization trusts for the RFC 7523 jwt-bearer grant. The issuer_url must match the JWT iss claim exactly.

class BetaFederationIssuerPollStatus { ConsecutiveFailures; LastFetchedAt; NextPollAt; }

Status of automatic JWKS polling for a federation issuer.

Anthropic periodically fetches the issuer's signing keys in the background. These fields summarize the most recent fetches so the health of the JWKS endpoint can be monitored.

required long ConsecutiveFailures

Consecutive fetch failures since the last success.

required DateTimeOffset? LastFetchedAt

When the last successful fetch completed.

formatdate-time
required DateTimeOffset? NextPollAt

When the next fetch is scheduled. Null if paused.

formatdate-time
class BetaJwksDiscovery { Type = "discovery"; CACertPem; DiscoveryBase; }

JWKS via the issuer's OIDC discovery document.

JsonElement Type = "discovery"
string? CACertPem

Optional custom CA (PEM) for TLS verification of the JWKS fetch.

maxLength8192
string? DiscoveryBase

Set when the discovery URL differs from issuer_url.

class BetaJwksExplicitUrl { Type = "explicit_url"; Url; CACertPem; }

JWKS fetched from a fixed endpoint.

JsonElement Type = "explicit_url"
required string Url

JWKS endpoint.

minLength1
string? CACertPem

Optional custom CA (PEM) for TLS verification of the JWKS fetch.

maxLength8192
class BetaJwksInline { Type = "inline"; Keys; }

JWKS supplied directly; no network fetch.

JsonElement Type = "inline"
required IReadOnlyList<IReadOnlyDictionary<string, JsonElement>> Keys

Inline JWK objects.

minItems1