OpenAPI 3.1
Management API reference
Every operation below is generated from the same typed contract the Control Plane serves and enforces.
Customer operations
System
Service identity and transport conformance.
Organizations
Organizations, the root of the tenancy hierarchy.
ServicePrincipals
Named machine identities managed by Organization-wide administrators.
- GETList Organization-scoped ServicePrincipals
- POSTCreate an Organization-scoped ServicePrincipal
- GETRead an Organization-scoped ServicePrincipal
- POSTDisable an Organization-scoped ServicePrincipal
- GETList Grants for an Organization-scoped ServicePrincipal
- POSTCreate a Grant for an Organization-scoped ServicePrincipal
- GETRead a Grant for an Organization-scoped ServicePrincipal
- POSTRevoke a Grant for an Organization-scoped ServicePrincipal
- GETList API Keys for an Organization-scoped ServicePrincipal
- POSTIssue an API Key for an Organization-scoped ServicePrincipal
- GETRead an API Key for an Organization-scoped ServicePrincipal
- POSTRevoke an API Key for an Organization-scoped ServicePrincipal
- GETList Project-scoped ServicePrincipals
- POSTCreate a Project-scoped ServicePrincipal
- GETRead a Project-scoped ServicePrincipal
- POSTDisable a Project-scoped ServicePrincipal
- GETList Grants for a Project-scoped ServicePrincipal
- POSTCreate a Grant for a Project-scoped ServicePrincipal
- GETRead a Grant for a Project-scoped ServicePrincipal
- POSTRevoke a Grant for a Project-scoped ServicePrincipal
- GETList API Keys for a Project-scoped ServicePrincipal
- POSTIssue an API Key for a Project-scoped ServicePrincipal
- GETRead an API Key for a Project-scoped ServicePrincipal
- POSTRevoke an API Key for a Project-scoped ServicePrincipal
- GETList Environment-scoped ServicePrincipals
- POSTCreate an Environment-scoped ServicePrincipal
- GETRead an Environment-scoped ServicePrincipal
- POSTDisable an Environment-scoped ServicePrincipal
- GETList Grants for an Environment-scoped ServicePrincipal
- POSTCreate a Grant for an Environment-scoped ServicePrincipal
- GETRead a Grant for an Environment-scoped ServicePrincipal
- POSTRevoke a Grant for an Environment-scoped ServicePrincipal
- GETList API Keys for an Environment-scoped ServicePrincipal
- POSTIssue an API Key for an Environment-scoped ServicePrincipal
- GETRead an API Key for an Environment-scoped ServicePrincipal
- POSTRevoke an API Key for an Environment-scoped ServicePrincipal
Projects
Projects, scoped to one Organization.
Agent Definitions
Agent Definitions and their stable Project-scoped keys.
Agent Versions
Immutable, sequential configuration publications for Agent Definitions.
Environments
Environments, the `test` and `live` boundaries within one Project.
Agents
Agent Principals and their Environment-specific runtime identity.
Agent Releases
Append-only Agent release history and conditional Test or Live activation.
Agent Configurations
Stable desired Agent Configuration and its apply evidence.
Data Integrations
Data-defined Integration identities.
Data Integration Versions
Immutable data-defined service contracts.
Data Integration Applications
Data Integration Applications.
Integration Environment Bindings
Stable Environment Integration selections.
Tenant Data Integration Connections
Tenant-confined data Integration Connections.
Integration applications
Organization-owned OAuth application identities and credential status.
Integration connections
Environment- and User-scoped connected provider accounts.
Provider applications
Organization-owned provider application identities and credential status.
Surface registrations
Surface provider applications and their delivery capabilities.
Connections
Tenant-scoped installed provider authorizations.
Surface Identity bindings
Provider identities resolved within one Tenant and Surface.
Web Surface access
Revocable browser transport trust for Web Surfaces.
Tenants
Tenants, the runtime and data-isolation boundaries within one Environment.
Knowledge Bases
Provider-neutral knowledge corpora and their active embedding snapshots.
Users
Users, the Tenant-scoped human subjects of Agent work.
Cantora-operated endpoints
These operations bootstrap and provision the platform. Customer credentials cannot call them, but they remain part of the complete language-neutral contract.
Platform bootstrap
The one-time platform bootstrap.
Organization provisioning
Cantora-operated customer Organization provisioning.
Organizations
Organizations, the root of the tenancy hierarchy.