/service-accountsWrite operationCreate a service account and its initial credential
Creates native v2 key material in the credential home cell. The token is returned only by this private no-store response and exact idempotent replays retained for seven days.
service-accounts:writePrepare this request
The builder does not execute requests or persist credentials. Replace the environment-variable placeholder only in your terminal or secret-aware runtime.
Headers
1Idempotency-KeyrequiredUnique request key retained for seven days. Within that window, reuse with different data is rejected.
Request body
application/jsondescriptionHuman-readable description of the resource.
expiresAtTimestamp after which this capability or record is no longer valid.
namerequiredHuman-readable name of the resource.
scopesrequiredThe scopes associated with this service account.
Responses
9200An exact replay of a completed issuance.application/json
application/jsonPublic API representation of service account credential.
The attributes associated with this service account credential.
createdAtrequiredTimestamp at which the resource was created.
descriptionrequiredHuman-readable description of the resource.
expiresAtrequiredTimestamp after which this capability or record is no longer valid.
generationrequiredThe generation associated with this service account credential attributes.
graceEndsAtrequiredISO 8601 timestamp for grace ends at.
lastFourrequiredThe last four associated with this service account credential attributes.
lastUsedAtrequiredISO 8601 timestamp for last used at.
namerequiredHuman-readable name of the resource.
notBeforeAtrequiredISO 8601 timestamp for not before at.
principalIdrequiredThe principal id associated with this service account credential attributes.
scopesrequiredThe scopes associated with this service account credential attributes.
statusrequiredCanonical status of the resource or operation.
activeexpiredretiringrevokedtokenReveal-once token returned only by an idempotent create or rotation response.
idrequiredStable TeamGrid identifier for this resource.
typerequiredCanonical type discriminator for this resource.
Public API representation of meta.
requestIdrequiredUnique identifier assigned to the API request for tracing and support.
201A newly issued native credential.application/json
application/jsonPublic API representation of service account credential.
The attributes associated with this service account credential.
createdAtrequiredTimestamp at which the resource was created.
descriptionrequiredHuman-readable description of the resource.
expiresAtrequiredTimestamp after which this capability or record is no longer valid.
generationrequiredThe generation associated with this service account credential attributes.
graceEndsAtrequiredISO 8601 timestamp for grace ends at.
lastFourrequiredThe last four associated with this service account credential attributes.
lastUsedAtrequiredISO 8601 timestamp for last used at.
namerequiredHuman-readable name of the resource.
notBeforeAtrequiredISO 8601 timestamp for not before at.
principalIdrequiredThe principal id associated with this service account credential attributes.
scopesrequiredThe scopes associated with this service account credential attributes.
statusrequiredCanonical status of the resource or operation.
activeexpiredretiringrevokedtokenReveal-once token returned only by an idempotent create or rotation response.
idrequiredStable TeamGrid identifier for this resource.
typerequiredCanonical type discriminator for this resource.
Public API representation of meta.
requestIdrequiredUnique identifier assigned to the API request for tracing and support.
400The request is invalid.application/json
application/jsonThe errors associated with this error.
coderequiredStable machine-readable code for programmatic error or state handling.
detailrequiredThe detail associated with this api error.
sourceThe source associated with this api error.
statusrequiredCanonical status of the resource or operation.
titlerequiredHuman-readable title of the resource.
Request metadata, including the request identifier and pagination state when applicable.
requestIdrequiredUnique identifier assigned to the API request for tracing and support.
401The bearer credential is missing, invalid, expired, or revoked.application/json
application/jsonThe errors associated with this error.
coderequiredStable machine-readable code for programmatic error or state handling.
detailrequiredThe detail associated with this api error.
sourceThe source associated with this api error.
statusrequiredCanonical status of the resource or operation.
titlerequiredHuman-readable title of the resource.
Request metadata, including the request identifier and pagination state when applicable.
requestIdrequiredUnique identifier assigned to the API request for tracing and support.
403The credential has insufficient scope.application/json
application/jsonThe errors associated with this error.
coderequiredStable machine-readable code for programmatic error or state handling.
detailrequiredThe detail associated with this api error.
sourceThe source associated with this api error.
statusrequiredCanonical status of the resource or operation.
titlerequiredHuman-readable title of the resource.
Request metadata, including the request identifier and pagination state when applicable.
requestIdrequiredUnique identifier assigned to the API request for tracing and support.
409The request conflicts with the current resource state.application/json
application/jsonThe errors associated with this error.
coderequiredStable machine-readable code for programmatic error or state handling.
detailrequiredThe detail associated with this api error.
sourceThe source associated with this api error.
statusrequiredCanonical status of the resource or operation.
titlerequiredHuman-readable title of the resource.
Request metadata, including the request identifier and pagination state when applicable.
requestIdrequiredUnique identifier assigned to the API request for tracing and support.
429The credential or source exceeded its rate limit.application/json
application/jsonThe errors associated with this error.
coderequiredStable machine-readable code for programmatic error or state handling.
detailrequiredThe detail associated with this api error.
sourceThe source associated with this api error.
statusrequiredCanonical status of the resource or operation.
titlerequiredHuman-readable title of the resource.
Request metadata, including the request identifier and pagination state when applicable.
requestIdrequiredUnique identifier assigned to the API request for tracing and support.
502The cell-local application returned an invalid response.application/json
application/jsonThe errors associated with this error.
coderequiredStable machine-readable code for programmatic error or state handling.
detailrequiredThe detail associated with this api error.
sourceThe source associated with this api error.
statusrequiredCanonical status of the resource or operation.
titlerequiredHuman-readable title of the resource.
Request metadata, including the request identifier and pagination state when applicable.
requestIdrequiredUnique identifier assigned to the API request for tracing and support.
503A required cell-local dependency is unavailable.application/json
application/jsonThe errors associated with this error.
coderequiredStable machine-readable code for programmatic error or state handling.
detailrequiredThe detail associated with this api error.
sourceThe source associated with this api error.
statusrequiredCanonical status of the resource or operation.
titlerequiredHuman-readable title of the resource.
Request metadata, including the request identifier and pagination state when applicable.
requestIdrequiredUnique identifier assigned to the API request for tracing and support.
Thank you. The rating contains no account or customer data.