---
title: "Describe credential provider setup values"
method: GET
path: "/credentials/federation-setup"
tags: ["credentials"]
---

# Describe credential provider setup values

`GET /credentials/federation-setup`

Returns the labelled values an administrator copies into their cloud provider console to set up a credential of the given provider — for AWS OIDC workload identity: this installation's public address and the subject claims Platform mints. Scope-level rather than per-credential, because these values are needed before a credential can be created. Append `?workspaceId` for a workspace context.

## Query parameters

- `workspaceId` integer
- `provider` string, required

## Response `200`

OK

- CredentialsSetupValuesResponse
  - `setupValues` CredentialsSetupValue[] — Labelled values to copy into the cloud provider console. Empty when the provider has nothing to surface.
    - `label` string
    - `value` string

## Other responses

- `400` — Bad request
- `403` — Operation not allowed

## Changes

> 17 revisions in range; 1 not diffed.

- **2026-09-21** `ca2c61bb3604` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/seqeralabs/apis/seqera-api/changes/credentials/federation-setup/get.md)

---

[API](https://skmtc.dev/seqeralabs/apis/seqera-api.md) · [All operations](https://skmtc.dev/seqeralabs/apis/seqera-api/llms.txt) · [OpenAPI document](https://skmtc.dev/seqeralabs/apis/seqera-api/revisions/24f327d93421?raw)
