/create-secret

Recent Requests
Log in to see full request history
TimeStatusUser Agent
Retrieving recent requests…
LoadingLoading…
Body Params
string
string
Defaults to regular

for personal password manager

boolean

Enable or disable Agentic Runtime Authority rule enforcement for this item.
When false, user-defined input/output rules are stored but not enforced;
the base security validation still runs.

AraEnabled is tri-state (nil/true/false), not a plain bool: it self-encodes
its wire value (see akl.OptionalBool) so an explicit false survives the
curl-proxy relay instead of being dropped like a default-false bool flag.

string

Trigger an event when a secret value changed [true/false] (Relevant only for Static Secret)

custom-field
object

For Password Management use, additional fields

string

Protection from accidental deletion of this object [true/false]

string

Description of the object

boolean

EnableAra is the documented spelling of AraEnabled. Both set the same
field; --ara-enabled shipped first and stays as an undocumented alias
so existing scripts and the Terraform provider keep working.

boolean

Turns on AI Quorum checks for this item.

string
Defaults to text

Secret format [text/json/key-value] (relevant only for type 'generic')

string

Host provider type [explicit/target], Default Host provider is explicit, Relevant only for SRA items.

inject-url
array of strings

For Password Management use, reflect the website context

inject-url
input-rule
array of strings

Agentic input rule in name=...,rule=... format (e.g. name=rule1,rule=Sanitize input)

input-rule
item-custom-fields
object

Additional custom fields to associate with the item

boolean
Defaults to false

Set output format to JSON

string

Lock this secret for read/update while an SRA session is active

string

Lock this secret after each successful value read

string

Lock TTL in minutes

string

Set the maximum number of versions, limited by the account settings defaults.

string

Deprecated - use description

boolean

The provided value is a multiline value (separated by '\n')

string
required

Secret name

output-rule
array of strings

Agentic output rule in name=...,rule=... format (e.g. name=rule1,rule=Mask secrets)

output-rule
string

For Password Management use, additional fields

string

The name of a key that used to encrypt the secret value (if empty, the
account default protectionKey key will be used)

string

Deprecated. use secure-access-certificate-issuer

string

Path to the SSH Certificate Issuer for your Akeyless Secure Access

string

Enable/Disable secure remote access [true/false]

boolean

Enforce connections only to allowed SRA hosts

string
secure-access-host
array of strings

Target servers for connections (In case of Linked Target association, host(s) will inherit Linked Target hosts - Relevant only for Dynamic Secrets/producers)

secure-access-host
string

Remote Desktop Username

string

Static-Secret values contains SSH Credentials, either Private Key or Password [password/private-key]

string

Override the SSH username as indicated in SSH Certificate Issuer

string

Destination URL to inject secrets

boolean
Defaults to false

Secure browser via Akeyless's Secure Remote Access (SRA)

boolean
Defaults to false

Web-Proxy via Akeyless's Secure Remote Access (SRA)

tags
array of strings

Add tags attached to this object

tags
target
array of strings

A list of targets to be associated with an SRA item, To specify multiple targets use argument multiple times

target
string

Authentication token (see /auth and /configure)

string
Defaults to generic

The secret sub type [generic/password]

string

The universal identity token, Required only for universal_identity authentication

string

For Password Management use

string
required

The secret value (relevant only for type 'generic')

Responses

Language
LoadingLoading…
Response
Click Try It! to start a request and see the response here! Or choose an example:
application/json
Footer Section