/ Docs
APIIntegrations vending

Vend Integration Token

Vend a short-lived access token for this workload's granted credential.

POST
/v1/integrations/token

Authorization

BearerAuth
AuthorizationBearer <token>

Botyard API key — see /docs/authentication.

In: header

Request Body

application/json

TypeScript Definitions

Use the request body type in TypeScript.

Body for POST /v1/integrations/token.

There is no credential_id field, and there never should be. The credential is derived server-side from the caller's verified identity, so asking for another instance's credential is not a request the server refuses — it is a request that cannot be expressed.

provider only ever narrows within what the caller already holds, and is needed only when a principal is granted credentials for more than one provider (design.md §3.3). With a single grant the body is empty.

Response Body

application/json

curl -X POST "https://example.com/v1/integrations/token" \  -H "Content-Type: application/json" \  -d '{}'
{
  "access_token": "string",
  "expires_at": "2019-08-24T14:15:22Z"
}
{
  "type": "string",
  "title": "string",
  "status": 0,
  "detail": "string",
  "instance": "string",
  "error_code": "string",
  "errors": [
    {
      "pointer": "string",
      "detail": "string",
      "type": "string"
    }
  ],
  "trace_id": "string"
}