provider-credentials
Upsert Credential
Create or replace an encrypted organization- or project-scoped credential.
PUT
Upsert Credential
Authorizations
Secure same-origin browser session cookie.
Path Parameters
Body
application/json
API keys are strings. Google service accounts use a JSON key string. aws_credentials accepts access_key_id and secret_access_key; temporary credentials also require session_token and an ISO expires_at with timezone. aws_assume_role accepts role_arn only. Its trust policy must require the server-owned ExternalId aixy-{organization_id}-{project_id}, or aixy-{organization_id}-organization for organization defaults. Explicit session credentials are not automatically renewed.
Available options:
api_key, google_service_account, aws_credentials, aws_assume_role Available options:
hybrid, provider_reported, pricing_rules, disabled Available options:
auto, none, usage_cost, usage_cost_usd Available options:
auto, none, openai_include_usage Response
Successful Response