# AxonFlow System Policies API

**Canonical:** https://apis.io/apis/axonflow/axonflow-system-policies-api/  
**Provider:** AxonFlow — https://apis.io/providers/axonflow/  
**Base URL:** http://localhost:8080  
**Documentation:** https://docs.getaxonflow.com/docs/orchestration/api-reference/

AxonFlow System Policies API is one of 54 APIs that [AxonFlow](https://apis.io/providers/axonflow/) publishes on the [APIs.io](https://apis.io/) network, described by a machine-readable OpenAPI specification. This API exposes 24 JSON Schema definitions. Tagged areas include System Policies. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and 24 JSON Schemas.

System policy management (ADR-019), served at `/api/v1/system-policies`. Pattern-based enforcement rules for SQL injection detection, PII detection and similar checks, resolved across the system, organization and tenant tiers. **v11: writes to this family are refused by the legacy policy freeze.** `migrations/core/172` makes `static_policies` read-only to the application roles, and create, update, delete and the enabled toggle write that table. On a deployment whose connection is an application role (the agent's default) those writes are refused with `409 LEGACY_POLICY_WRITE_FROZEN`, the answer the orchestrator gives for its own policy writes (see `policy-api.yaml`). Its `error.code` is that string, where the other errors on these routes carry the numeric status. Author policy through the typed authoring route, `/api/v1/typed-policies` in `orchestrator-api.yaml`. Reads, the pattern test, and the per-policy overrides - which are stored in their own table - are unaffected. A deployment whose connection may still write the table (the database owner; a property of the connection, not of `AXONFLOW_DB_USE_APP_ROLE` alone) is not bound by the revoke.

## Operations (14)

| Method | Path | Summary |
|---|---|---|
| GET | `/api/v1/policy-overrides` | List policy overrides (canonical alias) |
| GET | `/api/v1/system-policies` | List static policies |
| POST | `/api/v1/system-policies` | Create static policy |
| GET | `/api/v1/system-policies/effective` | Get effective policies |
| POST | `/api/v1/system-policies/test` | Test regex pattern |
| GET | `/api/v1/system-policies/overrides` | List policy overrides |
| GET | `/api/v1/system-policies/{id}` | Get static policy by ID |
| PUT | `/api/v1/system-policies/{id}` | Update static policy |
| DELETE | `/api/v1/system-policies/{id}` | Delete static policy |
| PATCH | `/api/v1/system-policies/{id}` | Toggle policy enabled status |
| GET | `/api/v1/system-policies/{id}/versions` | Get policy version history |
| GET | `/api/v1/system-policies/{id}/override` | Get active override for a policy |
| POST | `/api/v1/system-policies/{id}/override` | Create policy override |
| DELETE | `/api/v1/system-policies/{id}/override` | Delete policy override |

## Machine-readable artifacts (26)

- **OpenAPI** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/openapi/axonflow-system-policies-api-openapi.yml
- **Documentation** — https://docs.getaxonflow.com/docs/orchestration/api-reference/
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-decide-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-mcpcheck-input-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-pre-check-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-client-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-decide-request-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-mcpcheck-output-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-audit-log-entry-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-step-gate-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-ojkaudit-export-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-approval-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-audit-action-report-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-policy-evaluation-result-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-simulate-policies-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-create-policy-request-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-update-policy-request-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-impact-report-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-apply-template-request-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-test-policy-response-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-featassessment-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-aisystem-registry-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-create-registry-request-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-update-assessment-request-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-kill-switch-schema.json
- **JSONSchema** — https://raw.githubusercontent.com/api-evangelist/axonflow/refs/heads/main/json-schema/axonflow-update-registry-request-schema.json

## Other AxonFlow APIs (12)

- [AxonFlow Agents API](https://apis.io/apis/axonflow/axonflow-agents-api/)
- [AxonFlow Assessments API](https://apis.io/apis/axonflow/axonflow-assessments-api/)
- [AxonFlow Audit API](https://apis.io/apis/axonflow/axonflow-audit-api/)
- [AxonFlow Audit Verification API](https://apis.io/apis/axonflow/axonflow-audit-verification-api/)
- [AxonFlow Bulk Operations API](https://apis.io/apis/axonflow/axonflow-bulk-operations-api/)
- [AxonFlow Circuit Breaker API](https://apis.io/apis/axonflow/axonflow-circuit-breaker-api/)
- [AxonFlow Community SaaS API](https://apis.io/apis/axonflow/axonflow-community-saas-api/)
- [AxonFlow Compliance API](https://apis.io/apis/axonflow/axonflow-compliance-api/)
- [AxonFlow Connectors API](https://apis.io/apis/axonflow/axonflow-connectors-api/)
- [AxonFlow Cost Controls API](https://apis.io/apis/axonflow/axonflow-cost-controls-api/)
- [AxonFlow Cost Management API](https://apis.io/apis/axonflow/axonflow-cost-management-api/)
- [AxonFlow Decision & Execution Replay API](https://apis.io/apis/axonflow/axonflow-decision-execution-replay-api/)

## Tags

System Policies

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/apis/axonflow/axonflow-system-policies-api/). The API's provider profile, Kin Score and agent-readiness rating are at https://apis.io/providers/axonflow/.
