---
title: "Retrieve a specific OpenID Connect provider setting for the org."
method: GET
path: "/orgs/{org}/openid-connect/{slug_perm}/"
tags: ["orgs"]
---

# Retrieve a specific OpenID Connect provider setting for the org.

`GET /orgs/{org}/openid-connect/{slug_perm}/`

Retrieve a specific OpenID Connect provider setting for the org.

## Response `200`

OK

- ProviderSettings
  - `claims` object, required — The set of claims that any received tokens from the provider must contain to authenticate as the configured service account.
  - `enabled` boolean, required — Whether the provider settings should be used for incoming OIDC requests.
  - `mapping_claim` string, nullable — The OIDC claim to use for mapping to service accounts in dynamic_mappings. Note: This field and the dynamic mappings feature are still in early access. Breaking changes are possible as we receive feedback on this feature.
  - `name` string, required — The name of the provider settings are being configured for
  - `provider_url` string, uri, required — The URL from the provider that serves as the base for the OpenID configuration. For example, if the OpenID configuration is available at https://token.actions.githubusercontent.com/.well-known/openid-configuration, the provider URL would be https://token.actions.githubusercontent.com/
  - `service_accounts` string[] — The service accounts associated with these provider settings.
  - `slug` string, slug — The slug of the provider settings
  - `slug_perm` string, slug — The unique, immutable identifier of the provider settings.

## Other responses

- `400` — Request could not be processed (see detail).
- `422` — Missing or invalid parameters (see detail).

---

[API](https://skmtc.dev/cloudsmith/apis/cloudsmith-api-v1.md) · [All operations](https://skmtc.dev/cloudsmith/apis/cloudsmith-api-v1/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/cloudsmith/cloudsmith-api-v1/revisions/4d7879df9b2f/schema)
