---
title: "Get a private Forge installation"
method: GET
path: "/atlassian/forge/installations/{installation_id}"
tags: ["ForgeInstallation"]
---

# Get a private Forge installation

`GET /atlassian/forge/installations/{installation_id}`

Get a private Forge installation. Restricted to infrastructure API keys with global integration permissions.

## Path parameters

- `installation_id` string, required

## Query parameters

- `app_id` string, required
- `environment_id` string, required

## Response `200`

Success

- ForgeInstallation
  - `installation_id` string, required
  - `app_id` string, required
  - `environment_id` string, required
  - `cloud_id` string
  - `api_base_url` string
  - `base_url` string
  - `legacy_client_key` string
  - `replaces_installation_id` string
  - `system_token` string — Private app system token. Never store in workspace integration configuration.
  - `token_expires_at` integer — Token expiry in milliseconds since the Unix epoch.
  - `encryption_workspace_id` string — Server-managed. Workspace whose KMS key currently encrypts system_token; absent while the installation is unclaimed and the token sits under the shared unclaimed-installations key.
  - `active` boolean — Server-managed installation state; an inactive identity cannot be reactivated.

## Other responses

- `400` — Invalid or missing parameter
- `401` — User not authenticated
- `403` — User not authorized
- `404` — Entity not found
- `default` — Unknown error

## Changes

- **2026-09-26** `e0444c72fafc` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/mabl/apis/mabl-api/changes/atlassian/forge/installations/:installation_id/get.md)

---

[API](https://skmtc.dev/mabl/apis/mabl-api.md) · [All operations](https://skmtc.dev/mabl/apis/mabl-api/llms.txt) · [OpenAPI document](https://skmtc.dev/mabl/apis/mabl-api/revisions/24dd8c2933df?raw)
