Defakto Management API

The Defakto control-plane API. A gRPC service surface of sixteen versioned services covering trust domains, clusters, realms, workloads, access policy, service accounts and sessions, agent and provider attestation, CI/CD profiles, federation, developer identity, managed configuration, alerts, statistics and the Ledger secret scanner. It is the API behind the console at console.defakto.security and the spirlctl CLI. There is no REST/OpenAPI surface: the transport is gRPC over HTTP/2 on port 443, and the contract is distributed as generated client bindings in the Go SDK rather than as published .proto files.

Documentation

Other Resources

🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/_index.yml
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-trustdomainapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-clusterapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-accessapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-workloadsapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-realmapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-sessionapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-scannerapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-configapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-federationapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-cicdapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-devidentityapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-agentattestationapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-providerattestationapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-alertapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-statisticsapi.proto
🔗
Protobuf
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/grpc/defakto-security-listing.proto
🔗
ErrorCatalog
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/errors/defakto-security-problem-types.yml
🔗
DataModel
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/data-model/defakto-security-data-model.yml
🔗
APIsJSON
https://raw.githubusercontent.com/api-evangelist/defakto-security/refs/heads/main/apis.yml

API entry from apis.yml

apis.yml Raw ↑
aid: defakto-security-management-api
name: Defakto Management API
description: 'The Defakto control-plane API. A gRPC service surface of sixteen versioned services covering
  trust domains, clusters, realms, workloads, access policy, service accounts and sessions, agent and
  provider attestation, CI/CD profiles, federation, developer identity, managed configuration, alerts,
  statistics and the Ledger secret scanner. It is the API behind the console at console.defakto.security
  and the spirlctl CLI. There is no REST/OpenAPI surface: the transport is gRPC over HTTP/2 on port 443,
  and the contract is distributed as generated client bindings in the Go SDK rather than as published
  .proto files.'
humanURL: https://d.defakto.security/
baseURL: https://api.defakto.security
tags:
- Identity
- Workload Identity
- gRPC
- Security
properties:
- type: Documentation
  url: https://d.defakto.security/
- type: GettingStarted
  url: https://d.defakto.security/mint/quick-start.md
- type: Authentication
  url: authentication/defakto-security-authentication.yml
- type: Protobuf
  url: grpc/_index.yml
- type: Protobuf
  url: grpc/defakto-security-trustdomainapi.proto
- type: Protobuf
  url: grpc/defakto-security-clusterapi.proto
- type: Protobuf
  url: grpc/defakto-security-accessapi.proto
- type: Protobuf
  url: grpc/defakto-security-workloadsapi.proto
- type: Protobuf
  url: grpc/defakto-security-realmapi.proto
- type: Protobuf
  url: grpc/defakto-security-sessionapi.proto
- type: Protobuf
  url: grpc/defakto-security-scannerapi.proto
- type: Protobuf
  url: grpc/defakto-security-configapi.proto
- type: Protobuf
  url: grpc/defakto-security-federationapi.proto
- type: Protobuf
  url: grpc/defakto-security-cicdapi.proto
- type: Protobuf
  url: grpc/defakto-security-devidentityapi.proto
- type: Protobuf
  url: grpc/defakto-security-agentattestationapi.proto
- type: Protobuf
  url: grpc/defakto-security-providerattestationapi.proto
- type: Protobuf
  url: grpc/defakto-security-alertapi.proto
- type: Protobuf
  url: grpc/defakto-security-statisticsapi.proto
- type: Protobuf
  url: grpc/defakto-security-listing.proto
- type: ErrorCatalog
  url: errors/defakto-security-problem-types.yml
- type: DataModel
  url: data-model/defakto-security-data-model.yml