Get Project Key
Get Project Key detail including Kafka ACLs and whitelist IPs for edit modal hydration.
/project-keys/{project_key_id}AuthorizationBearer token · headerrequiredproject_key_idstringrequiredSuccessful Response
idstringrequirednamestringrequireddescriptionstring | nullShow propertiesHide properties
stringnullcreated_atstring<date-time> | nullShow propertiesHide properties
string<date-time>nullcreated_by_userUser | nullShow propertiesHide properties
idstringrequiredemailstringrequirednamestringrequiredprofile_picture_urlstring | nullShow propertiesHide properties
stringnullphone_numberstring | nullShow propertiesHide properties
stringnulltenant_idstringrequiredcreated_atstring | string<date-time> | nullShow propertiesHide properties
stringstring<date-time>nulllast_loginstring | string<date-time> | nullShow propertiesHide properties
stringstring<date-time>nullnullapi_client_idstring | nullShow propertiesHide properties
stringnullapi_client_id_masked_secretstring | nullShow propertiesHide properties
stringnullkafka_usernamestring | nullShow propertiesHide properties
stringnullservice_idstringrequiredrolesRole[]Show propertiesHide properties
Roleidstringrequiredkeystringrequirednamestringrequireddescriptionstring | nullrequiredShow propertiesHide properties
stringnullcreated_atstring | string<date-time> | nullShow propertiesHide properties
stringstring<date-time>nullupdated_atstring | string<date-time> | nullShow propertiesHide properties
stringstring<date-time>nullpermissionsstring[]statusstringrequiredlast_used_atstring<date-time> | nullShow propertiesHide properties
string<date-time>nulltool_profileToolProfile | nullShow propertiesHide properties
stringnullallowed_toolsstring[] | nullShow propertiesHide properties
stringstringnullblocked_toolsstring[] | nullShow propertiesHide properties
stringstringnullagentic_enabledbooleanWhether this Project Key is wired up as the auth blob behind the Streamkap MCP. Toggled via POST /project-keys/{id}/enable-agentic and disable-agentic. When true, the encrypted credential lives on the PK row (server-side only); the agent picker on the FE filters to PKs where this is true.
agentic_secret_blobstring | nullAlways masked to '********' on responses when agentic_enabled is true; null otherwise. Server-derived only - PUT/PATCH bodies that include this field are rejected with 422.
Show propertiesHide properties
stringnullkafka_aclsobject[]whitelist_ipsstring | nullShow propertiesHide properties
stringnullkafka_proxy_endpointstring | nullKafka proxy endpoint (e.g. host:32400)
Show propertiesHide properties
stringnullschema_proxy_endpointstring | nullSchema Registry proxy endpoint
Show propertiesHide properties
stringnulltoken_ttl_secondsintegerFrontegg JWT token TTL in seconds (dynamic - reflects the current tenant-level authentication token expiration setting in Frontegg). Frontend uses this to display 'role changes take effect within X hours' on role updates.
Validation Error
detailValidationError[]Show propertiesHide properties
ValidationErrorlocstring | integer[]requiredShow propertiesHide properties
string | integerstringintegermsgstringrequiredtypestringrequiredinputanyctxobject