Add a credential policy

POST/credentials/{credential_id}/policies

Adds a policy to a credential. The change publishes a new policy revision containing the existing policies plus the new one.

Permissions listed in capabilities that the calling credential cannot delegate, including the non-delegable credentials.* and administrators.* permissions, are rejected with delegation_limit_exceeded, and no new revision is published.

A credential cannot modify its own policies.

AuthorizationBearer <token>

Autonomous mode: the API credential secret, sent as a bearer token. Credential secrets are identified by a fixed prefix.

In: header

Path Parameters

credential_id*string

Header Parameters

Idempotency-Key*string

Request Body

application/json

TypeScript Definitions

Use the request body type in TypeScript.

Response Body

application/json

application/json

application/json

application/json

application/json

curl -X POST "https://example.com/credentials/string/policies" \  -H "Idempotency-Key: string" \  -H "Content-Type: application/json" \  -d '{    "capabilities": [      "string"    ],    "resources": [      {}    ]  }'
{  "data": {    "capabilities": [      "string"    ],    "id": "string",    "object": "policy",    "published_at": "2019-08-24T14:15:22Z",    "published_by": {      "id": "string",      "kind": "admin"    },    "resources": [      {        "ids": [          "string"        ],        "include_future": true,        "parent": "string",        "selector": "instance",        "type": "instance"      }    ],    "version": 0  }}