NylorunDocsBeta
Runtime APIService

Get the public keys the Runtime's tokens are signed with

GET
/v1/access/jwks

A JSON Web Key Set, to verify a token the Runtime signed without calling it. No credential is needed.

Authorization

headerAuthorizationBearer <token>

An application key of the Tenant (PUT /v1/tenant/keys/{keyId}), or Studio's key, derived from the admin key. With Nylorun-Subject and Nylorun-Scopes, it acts for that person, narrowed to those scopes. Never accepted from a browser (Origin).

Header Parameters

Nylorun-Protocol*string

The protocol version, 8

Nylorun-Subject?string

The person an application key acts for

Nylorun-Scopes?string

The subject's space-separated scopes; required with a subject

Response Body

The public keys

application/json
  1. response
keys*array<>
import { createClient } from "@nylorun/agents";const client = await createClient();const jwks = await client.access.jwks();
{  "keys": [    {      "kty": "EC",      "crv": "P-256",      "x": "string",      "y": "string",      "kid": "string",      "alg": "ES256",      "use": "sig"    }  ]}