Get the public keys the Runtime's tokens are signed with
A JSON Web Key Set, to verify a token the Runtime signed without calling it. No credential is needed.
AuthorizationBearer <token>An application key of the Tenant (PUT /v1/tenant/keys/{keyId}), or Studio's key, derived from the admin key. With Nylorun-Subject and Nylorun-Scopes, it acts for that person, narrowed to those scopes. Never accepted from a browser (Origin).
Nylorun-Protocol*stringThe protocol version, 8
Nylorun-Subject?stringThe person an application key acts for
Nylorun-Scopes?stringThe subject's space-separated scopes; required with a subject
The public keys
application/json- response
keys*array<>import { createClient } from "@nylorun/agents";const client = await createClient();const jwks = await client.access.jwks();{ "keys": [ { "kty": "EC", "crv": "P-256", "x": "string", "y": "string", "kid": "string", "alg": "ES256", "use": "sig" } ]}Get who the caller is GET
The subject, scopes, agents and sandbox grants of the credential that sends it: an application key (alone or acting for a subject), a management key (`via: management:<principalId>`, no scopes, no agents), or a trusted issuer's token (`via: issuer:<name>`).
Get the Runtime API's document GET
This document. `/openapi.json` is the same.