List the secrets an intern receives
Lists, one entry per name, the secret the intern's outbound requests receive: its own secrets, secrets from an attached vault, and workspace secrets, including ones stored before workspace-scoped storage. Where several vaults hold a name, the entry is the one that wins, in the order intern, attached, workspace. The same resolution decides what outbound requests receive, so this list and the intern's requests agree. scope says which vault the entry comes from. Responses carry metadata only, never values. Results are ordered by name and paginated with limit and offset. Returns 404 when the intern's attached vault is no longer available, since the intern then receives no secrets. The scope is selected by the API key: workspace routes act on the key's active workspace and intern routes act on one intern inside that workspace. There is no default workspace and no fallback to another scope. Every vault route, including reads, requires access to the Intern API programme and returns 404 outside it. An intern's own API key is confined to that intern: it can always read the intern's secrets and effective secrets, writes to them follow the rules above, and every other intern and every workspace route answers 404. Requests on regional hostnames such as eu.openrouter.ai are refused. API key required.
Path parameters
UUID of an intern in the workspace selected by the API key.
UUID of an intern in the workspace selected by the API key.
Query parameters
Page size, 1 to 100. Defaults to 100.
Page size, 1 to 100. Defaults to 100.
Number of secrets to skip, 0 to 10000. Defaults to 0.
Number of secrets to skip, 0 to 10000. Defaults to 0.
Response
One page of the secrets the intern receives.
Example response
{
"data": [
{
"created_at": "2026-09-15T17:44:00.000Z",
"fingerprint": "sha256:9f86d081884c7d659a2feaa0c55ad015a3bf4f1b2b0b822cd15d6c15b0f00a08",
"hosts": [
"api.github.com"
],
"name": "github_token",
"scope": "intern"
},
{
"created_at": "2026-09-15T17:44:00.000Z",
"fingerprint": "sha256:bbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbb",
"hosts": [
"api.linear.app"
],
"name": "linear_api_key",
"scope": "workspace"
},
{
"created_at": "2026-08-01T09:30:00.000Z",
"fingerprint": null,
"hosts": null,
"name": "legacy_token",
"scope": "workspace"
}
],
"has_more": false
}Changes
Changed in 1 of the 340 revisions of this API.1
- ○
endpoint added
endpoint-added
- ○