Decodable Secrets API

Securely stored credentials referenced by connections.

Operations 5

GET /v1alpha2/secrets/ List secrets #
POST /v1alpha2/secrets/ Create a secret #
GET /v1alpha2/secrets/{secret_id} Get a secret #
PUT /v1alpha2/secrets/{secret_id} Update a secret #
DELETE /v1alpha2/secrets/{secret_id} Delete a secret #

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/decodable-secrets-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

decodable-secrets-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: Decodable Control Plane Connections Secrets API
  description: 'REST API for the Decodable managed stream-processing platform (built on Apache Flink and Debezium). The control-plane API manages connections, streams, pipelines, secrets, and account-level resources. The control-plane base URL is account-scoped: https://<account>.api.decodable.co. All requests are authenticated with a Bearer access token (the token issued after CLI login, found in ~/.decodable/auth). Endpoints and schemas in this document reflect publicly documented Decodable API behavior; fields not confirmed in public documentation are intentionally omitted rather than fabricated.'
  termsOfService: https://www.decodable.co/terms-of-service
  contact:
    name: Decodable Support
    url: https://docs.decodable.co
  version: v1alpha2
servers:
- url: https://{account}.api.decodable.co
  description: Decodable control-plane API (account-scoped)
  variables:
    account:
      default: acme-01
      description: Your Decodable account name
security:
- bearerAuth: []
tags:
- name: Secrets
  description: Securely stored credentials referenced by connections.
paths:
  /v1alpha2/secrets/:
    get:
      operationId: listSecrets
      tags:
      - Secrets
      summary: List secrets
      responses:
        '200':
          description: A list of secrets (metadata only; values are not returned).
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/SecretList'
    post:
      operationId: createSecret
      tags:
      - Secrets
      summary: Create a secret
      requestBody:
        required: true
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/Secret'
      responses:
        '201':
          description: The created secret.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Secret'
  /v1alpha2/secrets/{secret_id}:
    parameters:
    - $ref: '#/components/parameters/SecretId'
    get:
      operationId: getSecret
      tags:
      - Secrets
      summary: Get a secret
      description: Returns secret metadata; the secret value is not returned.
      responses:
        '200':
          description: The requested secret.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Secret'
    put:
      operationId: updateSecret
      tags:
      - Secrets
      summary: Update a secret
      requestBody:
        required: true
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/Secret'
      responses:
        '200':
          description: The updated secret.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Secret'
    delete:
      operationId: deleteSecret
      tags:
      - Secrets
      summary: Delete a secret
      responses:
        '204':
          description: The secret was deleted.
components:
  schemas:
    SecretList:
      type: object
      properties:
        items:
          type: array
          items:
            $ref: '#/components/schemas/Secret'
    Secret:
      type: object
      properties:
        id:
          type: string
          readOnly: true
        name:
          type: string
        description:
          type: string
        value:
          type: string
          writeOnly: true
          description: The secret value; write-only and never returned in responses.
  parameters:
    SecretId:
      name: secret_id
      in: path
      required: true
      schema:
        type: string
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      description: 'Decodable access token issued after CLI login (stored in ~/.decodable/auth), sent as an Authorization: Bearer header.'