Create application identity

Creates an AppRole or Kubernetes identity with an initial scope for this store. Requires scope: secret-store.write.

Authentication

AuthorizationBearer

IBEE platform API token. Production tokens start with ibee_prod_key_; development tokens start with ibee_dev_key_. Use a token only with its matching gateway environment.

Path parameters

store_idstringRequired
Secret store ID.

Query parameters

workspace_idstringRequiredformat: "^[1-9][0-9]*$">=1 character

The positive numeric workspace ID to scope this request to. Zero, negative, and non-numeric values are rejected.

Request

This endpoint expects an object.
auth_methodenumRequired
Authentication method used by the application.
namestringRequired1-128 characters
token_policy_modeenumOptionalDefaults to read_only
k8s_namespacestring or nullOptional

Required when auth_method is kubernetes.

k8s_service_accountstring or nullOptional

Required when auth_method is kubernetes.

Response

Identity created successfully. Fetch access details separately.
idstring
organization_idstring
workspace_idstring
namestring
auth_methodenum
openbao_role_namestring
statusenum
token_policy_modeenum
created_atdatetime
updated_atdatetime
k8s_namespacestring or nullOptional
k8s_service_accountstring or nullOptional

Errors

400
Bad Request Error
401
Unauthorized Error
403
Forbidden Error
404
Not Found Error
409
Conflict Error