VaultsCredentials
Add a credential
POST
A bearer token or OAuth tokens, bound to the URLs a tool may send them to.
managementKeyheader
AuthorizationBearer <token>A management key of the Tenant (role management): it reaches the Management API (/v1/tenant/*) and /v1/me, as itself, never for a subject. Issued only on the Tenant's machine (nylorun-operate keys put <id> --role management) or from NYLORUN_MANAGEMENT_KEY_FILE. Never accepted from a browser (Origin).
vaultId*stringNylorun-Protocol*stringThe protocol version, 8
application/json- body
requestId*stringLength
1 <= lengthidempotencyKey*stringLength
1 <= length <= 256name*stringLength
1 <= lengthauth*|The credential, without its secret
application/json- response
id*stringvaultId*stringname*stringtype*stringValue in
"bearer""oauth"binding*expiresAt?stringcreatedAt*stringrotatedAt?stringimport { createAdmin } from "@nylorun/admin";const admin = createAdmin();await admin.vaults.credentials.create("vlt_123", { name: "linear", idempotencyKey: "linear", auth: { type: "bearer", url: "https://mcp.linear.app/mcp", token: process.env.LINEAR_TOKEN!, },});{ "id": "string", "vaultId": "string", "name": "string", "type": "bearer", "binding": { "url": "string" }, "expiresAt": "string", "createdAt": "string", "rotatedAt": "string"}