Kong · Schema

EventGatewayParsedRecordDecryptionSelector

Selects fields of a parsed record for decryption.

API GatewayAI GatewayAI ConnectivityAgent GatewayEvent GatewayMCP RegistryService MeshLLMKafkaKonnectOpen-Source

Properties

Name Type Description
paths object Selects which fields of the parsed record to decrypt. A maximum of 50 path entries are allowed.
View JSON Schema on GitHub

JSON Schema

kong-eventgatewayparsedrecorddecryptionselector-schema.json Raw ↑
{
  "$schema": "https://json-schema.org/draft/2020-12/schema",
  "$id": "#/components/schemas/EventGatewayParsedRecordDecryptionSelector",
  "title": "EventGatewayParsedRecordDecryptionSelector",
  "description": "Selects fields of a parsed record for decryption.",
  "type": "object",
  "properties": {
    "paths": {
      "description": "Selects which fields of the parsed record to decrypt. A maximum of 50 path entries are allowed.",
      "oneOf": [
        {
          "type": "array",
          "maxItems": 50,
          "items": {
            "type": "object",
            "required": [
              "match"
            ],
            "properties": {
              "match": {
                "description": "A field selector. It can select nested fields and array entries.\n\nCurrently supported are exact matches.\n",
                "type": "string",
                "example": "someObject.someArray[1].fieldName"
              }
            }
          }
        },
        {
          "type": "string",
          "x-expression": {
            "type": "array",
            "items": {
              "type": "string"
            },
            "fields": [
              {
                "name": "context.auth.principal.name",
                "type": "string",
                "description": "Name of authenticated principal. Username in case of PLAIN/SCRAM, `sub` claim in case of OAUTHBEARER."
              },
              {
                "name": "context.auth.type",
                "type": "string",
                "description": "The matched authentication type from a virtual cluster: anonymous, sasl_plain, sasl_scram_sha256, sasl_scram_sha512, sasl_oauth_bearer.\n"
              },
              {
                "name": "context.auth.token.claims",
                "type": "object",
                "description": "All claims from the JWT token. Only populated for sasl_oauth_bearer authentication. Claims can be strings, numbers, booleans, arrays or nested JSON objects."
              },
              {
                "name": "record.headers",
                "type": "object",
                "description": "An associative array of header key value pairs."
              },
              {
                "name": "record.value.content",
                "type": "object",
                "description": "The content of the record value."
              }
            ]
          },
          "description": "This expression should evaluate to an array of exact field paths,\nequivalent to the `match` values in the array variant.\n",
          "example": "${context.auth.type == 'sasl_oauth_bearer' ? ['credentials.accessToken', 'credentials.refreshToken'] : ['credentials.password']}\n"
        }
      ]
    }
  },
  "required": [
    "paths"
  ]
}

Work with this as data

Every JSON Schema here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for schemas

4 MCP tools reach this
  • find_json_schemasBrowse and filter every JSON Schema in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This JSON Schema
curl "https://apis.io/api/v1/json-schemas/kong-eventgatewayparsedrecorddecryptionselector"
All schemas
curl "https://apis.io/api/v1/json-schemas?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.