hosting
GET /v1/sites/{siteId}/application-access
The sign-in details for the application installed on a site.
Аутентификација
Пошаљите API кључ као bearer токен. Ова крајња тачка не наводи конкретну дозволу у спецификацији, па свом кључу доделите најмања неопходна овлашћења и проверите одговор уместо да претпостављате.
Ова крајња тачка не прихвата id организације. Ваш кључ већ идентификује организацију којој припада, а одговор је ограничен на њу.
Испробајте
Замените све што је у угластим заградама сопственим вредностима, а чувар места кључа кључем са своје контролне табле.
curl -X GET https://api.zinndigital.com/v1/sites/{siteId}/application-access \
-H "Authorization: Bearer zdk_live_…"Пријављени сте? API конзола на вашој контролној табли попуњава ваш прави id организације и ваш сопствени кључ, и покреће захтев према живом API-ју како бисте могли да видите стварни одговор. Отворите ову крајњу тачку у API конзоли
Детаљи
Everything a customer needs to sign in to the Nextcloud, ownCloud or headless CMS we installed for them: where to sign in, the administrator username, and the password. ⛔ The password is derived, never stored — the same design GET /v1/sites/{siteId}/wp-credentials uses (engine.hosting.site_secrets), so there is no per-site secret at rest to leak and a retried deploy re-derives the identical value. can_reveal is false when it cannot be shown: either the deployment has no master key configured, or the customer changed the password themselves, and the screen must say which rather than render an empty field. This read is audit-logged, because "who looked at this site's administrator password" is exactly the question an incident asks afterwards.
Параметри
| Назив | Тип | Обавезно | Шта је ово |
|---|---|---|---|
siteId (path) | Uuid | Да | Site ID (UUIDv7). |
Одговор
| Назив | Тип | Обавезно | Шта је ово |
|---|---|---|---|
application | string | Да | — |
name | string | Да | — |
login_url | string | Да | The full URL to sign in at. |
username | string | Да | The administrator account the installer created. |
password | string | Да | The administrator password, or "" when it cannot be shown. Never stored — it is derived on read from the platform master key and the site's rotation epoch. |
can_reveal | boolean | Да | Whether password holds a value that can be shown. |
is_custom | boolean | Да | The customer set their own password, so there is nothing of ours to show. The screen says so rather than offering a reveal that would produce a blank. |
vendor_url | string | Не | — |
Грешке које ова крајња тачка може вратити
401 · 403 · 404 · 429