Download OpenAPI specification:
Kanva customer API. Select one current application session or a tenant-bound API key for workspace resources. Account privacy, recovery, and erasure receipts use separate purpose-bound cookies. Customer bearer tokens and credentials in URLs are rejected. Browser mutations require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF from /api/v1/auth/bootstrap or the current purpose context. Cookie names shown are installation defaults. Never combine an application cookie with X-API-Key. Execution, artifact delivery, local email, and privacy availability depend on qualified deployment adapters; documented contracts do not imply those adapters are enabled.
Anonymous HTTPS bootstrap establishes protected browser/antiforgery cookies and returns csrfToken, configured provider names, reviewed legal document URLs/versions, availability flags, localAccountsEnabled, and registrationEnabled. Missing reviewed notices or mail delivery keep registration unavailable.
{- "csrfToken": "string",
- "providers": [
- "string"
], - "privacyNoticeVersion": "string",
- "termsVersion": "string",
- "privacyNoticeAvailable": true,
- "termsAvailable": true,
- "localAccountsEnabled": true,
- "registrationEnabled": true
}Returns the application user's current identity and memberships, noncredential sessionId/sessionVersion, and refreshed csrfToken. A privacy or recovery cookie cannot access this endpoint.
{- "sessionId": "f6567dd8-e069-418e-8893-7d22fcf12459",
- "sessionVersion": 0,
- "csrfToken": "string",
- "userId": "2c4a230c-5085-4924-a3e1-25fb4fc5965b",
- "displayName": "string",
- "status": "unknown",
- "purpose": "unknown",
- "authenticatedAt": "2019-08-24T14:15:22Z",
- "expiresAt": "2019-08-24T14:15:22Z",
- "memberships": [
- {
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "name": "string",
- "membershipId": "8072cc74-4782-4f2c-827c-699c48ce2092",
- "role": "unknown",
- "version": 0
}
]
}Returns only the explicitly requested purpose context and refreshed csrfToken. The purpose query must match the eligible cookie; restricted contexts do not expose application workspace data.
| purpose | string (SessionPurpose) Enum: "unknown" "application" "accountPrivacy" "accountRecovery" "serviceStatus" |
{- "sessionId": "f6567dd8-e069-418e-8893-7d22fcf12459",
- "sessionVersion": 0,
- "csrfToken": "string",
- "userId": "2c4a230c-5085-4924-a3e1-25fb4fc5965b",
- "displayName": "string",
- "status": "unknown",
- "purpose": "unknown",
- "authenticatedAt": "2019-08-24T14:15:22Z",
- "expiresAt": "2019-08-24T14:15:22Z",
- "memberships": [
- {
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "name": "string",
- "membershipId": "8072cc74-4782-4f2c-827c-699c48ce2092",
- "role": "unknown",
- "version": 0
}
]
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Returns generic accepted=true without revealing account existence. Registration requires the exact displayed current privacyNoticeVersion and a configured reviewed notice and qualified mail delivery. Email proof remains unverified until challenge completion.
string or null | |
| privacyNoticeVersion | string or null |
{- "email": "string",
- "privacyNoticeVersion": "string"
}{- "accepted": true
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Returns generic accepted=true without revealing account existence. Registration requires the exact displayed current privacyNoticeVersion and a configured reviewed notice and qualified mail delivery. Email proof remains unverified until challenge completion.
string or null | |
| privacyNoticeVersion | string or null |
{- "email": "string",
- "privacyNoticeVersion": "string"
}{- "accepted": true
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
On success the HTTP response binds the eligible purpose cookie and returns authenticated=true and purpose. No customer access token is returned. Reauthentication refreshes the existing eligible purpose, without elevating a restricted session.
| challengeId | string <uuid> |
| secret | string or null |
| password | string or null |
{- "challengeId": "007cfdcc-a46d-4340-a4c6-216ec2e4009c",
- "secret": "string",
- "password": "string"
}{- "authenticated": true,
- "purpose": "unknown"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
On success the HTTP response binds the eligible purpose cookie and returns authenticated=true and purpose. No customer access token is returned. Reauthentication refreshes the existing eligible purpose, without elevating a restricted session.
string or null | |
| password | string or null |
{- "email": "string",
- "password": "string"
}{- "authenticated": true,
- "purpose": "unknown"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Uses a bounded one-use email challenge and a generic accepted response. Reset completion revokes prior sessions; it does not sign the caller in.
string or null | |
| privacyNoticeVersion | string or null |
{- "email": "string",
- "privacyNoticeVersion": "string"
}{- "accepted": true
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Uses a bounded one-use email challenge and a generic accepted response. Reset completion revokes prior sessions; it does not sign the caller in.
| challengeId | string <uuid> |
| secret | string or null |
| password | string or null |
{- "challengeId": "007cfdcc-a46d-4340-a4c6-216ec2e4009c",
- "secret": "string",
- "password": "string"
}{- "accepted": true
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
On success the HTTP response binds the eligible purpose cookie and returns authenticated=true and purpose. No customer access token is returned. Reauthentication refreshes the existing eligible purpose, without elevating a restricted session.
| password | string or null |
| purpose | string (SessionPurpose) Enum: "unknown" "application" "accountPrivacy" "accountRecovery" "serviceStatus" |
{- "password": "string",
- "purpose": "unknown"
}{- "authenticated": true,
- "purpose": "unknown"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Local credential operations require the exact eligible current session purpose and revoke obsolete authentication proofs.
| currentPassword | string or null |
| newPassword | string or null |
{- "currentPassword": "string",
- "newPassword": "string"
}{- "accepted": true
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Revokes only the current session of the requested purpose (application by default). Logout is a protected mutation; it cannot be triggered by a GET or another purpose cookie.
| purpose | string (SessionPurpose) Enum: "unknown" "application" "accountPrivacy" "accountRecovery" "serviceStatus" |
{- "accepted": true
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Consumes a one-use short-lived authorizationId created by the matching SignalR authentication flow and the same protected browser. It binds an HttpOnly purpose cookie. The authorization ID is not a reusable credential.
| authorizationId | string <uuid> |
{- "authorizationId": "fd01ce3c-0799-43be-b4cd-b95dd107d4d8"
}{- "authenticated": true,
- "purpose": "unknown"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Submit the same-origin form with csrfToken in its body and the exact current privacyNoticeVersion displayed before navigation. Returns a redirect to configured Google, an exact Microsoft tenant issuer, or the installation's exact enterprise OIDC provider. Reauthenticate=true additionally requires the existing requested purpose session. Provider callback handling is protocol middleware, not a customer bearer-token endpoint.
| provider required | string |
| CsrfToken | string |
| ReturnUrl | string |
| Reauthenticate | boolean |
| Purpose | string (SessionPurpose) Enum: "unknown" "application" "accountPrivacy" "accountRecovery" "serviceStatus" |
| PrivacyNoticeVersion | string |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Receipt-cookie access is limited to the bound erasure request and its receipt expiry. It grants no login, recovery, workspace, or operator authority.
Receipt-cookie access is limited to the bound erasure request and its receipt expiry. It grants no login, recovery, workspace, or operator authority.
| requestId required | string <uuid> |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Receipt-cookie access is limited to the bound erasure request and its receipt expiry. It grants no login, recovery, workspace, or operator authority.
| requestId required | string <uuid> |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| operationKey | string or null |
{- "operationKey": "string"
}Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| requestId required | string <uuid> |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| requestId required | string <uuid> |
| requestId | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedVersion": 0,
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| requestId required | string <uuid> |
| requestId | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedVersion": 0,
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| requestId required | string <uuid> |
| requestId | string <uuid> |
| expectedVersion | integer <int64> |
| scopeHash | string or null |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedVersion": 0,
- "scopeHash": "string",
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| requestId required | string <uuid> |
| receiptAuthorizationId | string <uuid> |
{- "receiptAuthorizationId": "9f165451-6fee-4665-b0ac-a079698aec66"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| requestId required | string <uuid> |
| requestId | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedVersion": 0,
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| operationKey | string or null |
{- "operationKey": "string"
}Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| id required | string <uuid> |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| requestId | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedVersion": 0,
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| requestId | string <uuid> |
| expectedVersion | integer <int64> |
| scopeHash | string or null |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedVersion": 0,
- "scopeHash": "string",
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| requestId | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedVersion": 0,
- "operationKey": "string"
}Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| cursor | string |
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| cursor | string |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
| receiptAuthorizationId | string <uuid> |
{- "receiptAuthorizationId": "9f165451-6fee-4665-b0ac-a079698aec66"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Application or privacy review context only, except the explicitly restricted recovery operation. Privacy review does not grant workspace access. Confirmation requires current recent authentication, reviewed versions, and qualified independent recovery/erasure dependencies.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| requestId | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedVersion": 0,
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Disabled. This legacy route never grants administrator authority and returns permission_denied (403) after authentication. Use the separately authorized identity-administration contracts for supported operator actions.
| page | integer <int32> Default: 0 Page number (0-based). |
| pageSize | integer <int32> Default: 20 Number of items per page (default 20, max 100). |
| search | string Optional search term to filter by email/user ID. |
{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Disabled. This legacy route never grants administrator authority and returns permission_denied (403) after authentication. Use the separately authorized identity-administration contracts for supported operator actions.
| userId required | string User ID (email). |
{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Disabled. This legacy route never grants administrator authority and returns permission_denied (403) after authentication. Use the separately authorized identity-administration contracts for supported operator actions.
| userId required | string User ID (email). |
{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Disabled. This legacy route never grants administrator authority and returns permission_denied (403) after authentication. Use the separately authorized identity-administration contracts for supported operator actions.
| userId required | string User ID (email). |
API key creation request.
| name required | string or null Human-readable name for the key. |
| description | string or null Optional description of the key's purpose. |
| scopes | Array of strings or null Permission scopes for this key. |
| expiresAt | string or null <date-time> When the key should expire. Null means never expires. |
{- "name": "string",
- "description": "string",
- "scopes": [
- "string"
], - "expiresAt": "2019-08-24T14:15:22Z"
}{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Disabled. This legacy route never grants administrator authority and returns permission_denied (403) after authentication. Use the separately authorized identity-administration contracts for supported operator actions.
| userId required | string User ID (email). |
| keyId required | string <uuid> API key ID. |
{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Disabled. This legacy route never grants administrator authority and returns permission_denied (403) after authentication. Use the separately authorized identity-administration contracts for supported operator actions.
| userId required | string User ID (email). |
| keyId required | string <uuid> API key ID. |
{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| searchBy | string or null |
| search | string or null |
| accountState | string or null |
| restrictionState | string or null |
| tenantId | string or null <uuid> |
| cursor | string or null |
| pageSize | integer <int32> |
{- "searchBy": "string",
- "search": "string",
- "accountState": "string",
- "restrictionState": "string",
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "cursor": "string",
- "pageSize": 0
}Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| kind | string Default: "workspace" |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| search | string |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| kind | string Default: "all" |
| search | string |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| state | string Default: "active" |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| action | string |
| targetId | string <uuid> |
| search | string |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| handler required | string |
| schemaVersion | integer <int32> |
| installationId | string <uuid> |
| tenantId | string or null <uuid> |
| targetId | string <uuid> |
| expectedTargetVersion | integer <int64> |
| operationKey | string or null |
| reason | string or null |
| arguments | any |
{- "schemaVersion": 0,
- "installationId": "7a1bf939-4d70-4439-9ced-a3dbbce12bd7",
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "targetId": "cbca1126-180e-4334-9df8-cf82289d378b",
- "expectedTargetVersion": 0,
- "operationKey": "string",
- "reason": "string",
- "arguments": null
}Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| commandHash | string or null |
| expectedDecisionVersion | integer <int64> |
| decision | string or null |
| operationKey | string or null |
| reason | string or null |
{- "commandHash": "string",
- "expectedDecisionVersion": 0,
- "decision": "string",
- "operationKey": "string",
- "reason": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| commandHash | string or null |
| approvalId | string or null <uuid> |
{- "commandHash": "string",
- "approvalId": "23bbe807-dea1-4601-b208-07fd1aaad2b6"
}Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| action | string |
| operationKey | string |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| state | string Default: "active" |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| tenantId | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| module required | string |
| tenantId | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| installationId | string <uuid> |
| scopeKind | string or null |
| targetId | string <uuid> |
| tenantId | string or null <uuid> |
| reasonCategory | string or null |
| safeExplanation | string or null |
| operationKey | string or null |
{- "installationId": "7a1bf939-4d70-4439-9ced-a3dbbce12bd7",
- "scopeKind": "string",
- "targetId": "cbca1126-180e-4334-9df8-cf82289d378b",
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "reasonCategory": "string",
- "safeExplanation": "string",
- "operationKey": "string"
}Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| tenantId | string <uuid> |
| state | string |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| tenantId required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| tenantId required | string <uuid> |
| proposalId required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| tenantId | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| requestId | string <uuid> |
| read | string or null |
| nodeId | string or null <uuid> |
| cursor | string or null |
| correlationId | string <uuid> |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "read": "string",
- "nodeId": "959356e3-6168-4a92-b4a5-b9d462be6177",
- "cursor": "string",
- "correlationId": "48fb4cd3-2ef6-4479-bea1-7c92721b988c"
}Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| id required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Human application session only. Create, rotate, and revoke require current recent authentication. Create and rotate require a stable operationKey; an exact retry returns metadata with secretAvailable=false and key=null. The plaintext secret is displayed only once. Rotation atomically revokes the old key, without overlap.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| operationKey required | string [ 1 .. 128 ] characters |
| name required | string [ 1 .. 100 ] characters Human-readable name for the key. |
| description | string or null <= 500 characters Optional description of the key's purpose. |
| scopes required | Array of strings Explicit granular scopes intersected with the current delegated membership authority. |
| expiresAt required | string <date-time> Required expiration, strictly in the future and within the configured maximum (90 days). |
{- "operationKey": "string",
- "name": "string",
- "description": "string",
- "scopes": [
- "string"
], - "expiresAt": "2019-08-24T14:15:22Z"
}{- "success": true,
- "data": {
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "apiPrincipalId": "4d66535e-eead-4006-8b6d-d65902bea82b",
- "version": 0,
- "principalVersion": 0,
- "key": "string",
- "secretAvailable": true,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "expiresAt": "2019-08-24T14:15:22Z",
- "scopes": [
- "string"
]
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Human application session only. Create, rotate, and revoke require current recent authentication. Create and rotate require a stable operationKey; an exact retry returns metadata with secretAvailable=false and key=null. The plaintext secret is displayed only once. Rotation atomically revokes the old key, without overlap.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": [
- {
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "apiPrincipalId": "4d66535e-eead-4006-8b6d-d65902bea82b",
- "version": 0,
- "principalVersion": 0,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "description": "string",
- "keyPrefix": "string",
- "scopes": [
- "string"
], - "expiresAt": "2019-08-24T14:15:22Z",
- "createdAt": "2019-08-24T14:15:22Z",
- "lastUsedAt": "2019-08-24T14:15:22Z",
- "revokedAt": "2019-08-24T14:15:22Z",
- "isActive": true,
- "createdByUserId": "string",
- "createdByDisplayName": "string"
}
], - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Human application session only. Create, rotate, and revoke require current recent authentication. Create and rotate require a stable operationKey; an exact retry returns metadata with secretAvailable=false and key=null. The plaintext secret is displayed only once. Rotation atomically revokes the old key, without overlap.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "apiPrincipalId": "4d66535e-eead-4006-8b6d-d65902bea82b",
- "version": 0,
- "principalVersion": 0,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "description": "string",
- "keyPrefix": "string",
- "scopes": [
- "string"
], - "expiresAt": "2019-08-24T14:15:22Z",
- "createdAt": "2019-08-24T14:15:22Z",
- "lastUsedAt": "2019-08-24T14:15:22Z",
- "revokedAt": "2019-08-24T14:15:22Z",
- "isActive": true,
- "createdByUserId": "string",
- "createdByDisplayName": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Human application session only. Create, rotate, and revoke require current recent authentication. Create and rotate require a stable operationKey; an exact retry returns metadata with secretAvailable=false and key=null. The plaintext secret is displayed only once. Rotation atomically revokes the old key, without overlap.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "expectedVersion": 0,
- "operationKey": "string"
}{- "success": true,
- "data": true,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Human application session only. Create, rotate, and revoke require current recent authentication. Create and rotate require a stable operationKey; an exact retry returns metadata with secretAvailable=false and key=null. The plaintext secret is displayed only once. Rotation atomically revokes the old key, without overlap.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| expectedVersion | integer <int64> |
| operationKey required | string or null |
{- "expectedVersion": 0,
- "operationKey": "string"
}{- "success": true,
- "data": {
- "expiresAt": "2019-08-24T14:15:22Z",
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "apiPrincipalId": "4d66535e-eead-4006-8b6d-d65902bea82b",
- "version": 0,
- "principalVersion": 0,
- "key": "string",
- "secretAvailable": true,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Protected immutable artifact delivery revalidates the current tenant and complete resource graph before opening bytes and during streaming. Descriptors contain an authenticated same-origin content endpoint, never a raw storage URL. Missing or inaccessible artifacts return 404; unavailable or corrupt storage returns 503.
| artifactId required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "artifactId": "706a3f1e-c357-4634-b1bf-20c221b5bb4e",
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "downloadName": "string",
- "bytes": 0,
- "sha256": "string",
- "contentType": "string",
- "contentEndpoint": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Protected immutable artifact delivery revalidates the current tenant and complete resource graph before opening bytes and during streaming. Descriptors contain an authenticated same-origin content endpoint, never a raw storage URL. Missing or inaccessible artifacts return 404; unavailable or corrupt storage returns 503.
| artifactId required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| Range | string Optional single byte range. |
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Protected immutable artifact delivery revalidates the current tenant and complete resource graph before opening bytes and during streaming. Descriptors contain an authenticated same-origin content endpoint, never a raw storage URL. Missing or inaccessible artifacts return 404; unavailable or corrupt storage returns 503.
| artifactId required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| Range | string Optional single byte range. |
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
Upload sessions bind the original actor and tenant. CSV, TSV, Excel (.xls/.xlsx), and Parquet inputs are limited to 100 MiB, with contiguous 4 MiB chunks except the final remainder. Stable operation keys make create, finalize, and cancel retryable. Finalization returns a real ingestion job; raw storage paths and byte authority are never returned.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| operationKey | string or null |
| fileName | string or null |
| format | string or null |
| expectedBytes | integer <int64> |
| expectedSha256 | string or null |
| dataSetId | string or null <uuid> |
| expectedDataSetRevision | integer or null <int64> |
| name | string or null |
| orderBy | string or null |
{- "operationKey": "string",
- "fileName": "string",
- "format": "string",
- "expectedBytes": 0,
- "expectedSha256": "string",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "expectedDataSetRevision": 0,
- "name": "string",
- "orderBy": "string"
}{- "success": true,
- "data": {
- "uploadSessionId": "1b27bbb1-4bfc-4edb-8a10-3614215b96d2",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "version": 0,
- "state": "created",
- "expectedBytes": 0,
- "acknowledgedBytes": 0,
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "cleanupPending": true,
- "transfer": {
- "contentEndpoint": "string",
- "statusEndpoint": "string",
- "chunkBytes": 0,
- "nextOffset": 0,
- "expiresAt": "2019-08-24T14:15:22Z",
- "idleExpiresAt": "2019-08-24T14:15:22Z"
}, - "failureCode": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Upload sessions bind the original actor and tenant. CSV, TSV, Excel (.xls/.xlsx), and Parquet inputs are limited to 100 MiB, with contiguous 4 MiB chunks except the final remainder. Stable operation keys make create, finalize, and cancel retryable. Finalization returns a real ingestion job; raw storage paths and byte authority are never returned.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "uploadSessionId": "1b27bbb1-4bfc-4edb-8a10-3614215b96d2",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "version": 0,
- "state": "created",
- "expectedBytes": 0,
- "acknowledgedBytes": 0,
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "cleanupPending": true,
- "transfer": {
- "contentEndpoint": "string",
- "statusEndpoint": "string",
- "chunkBytes": 0,
- "nextOffset": 0,
- "expiresAt": "2019-08-24T14:15:22Z",
- "idleExpiresAt": "2019-08-24T14:15:22Z"
}, - "failureCode": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
Upload sessions bind the original actor and tenant. CSV, TSV, Excel (.xls/.xlsx), and Parquet inputs are limited to 100 MiB, with contiguous 4 MiB chunks except the final remainder. Stable operation keys make create, finalize, and cancel retryable. Finalization returns a real ingestion job; raw storage paths and byte authority are never returned.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| operationKey | string or null |
| expectedSessionVersion | integer <int64> |
{- "operationKey": "string",
- "expectedSessionVersion": 0
}{- "success": true,
- "data": {
- "uploadSessionId": "1b27bbb1-4bfc-4edb-8a10-3614215b96d2",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "version": 0,
- "state": "created",
- "expectedBytes": 0,
- "acknowledgedBytes": 0,
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "cleanupPending": true,
- "transfer": {
- "contentEndpoint": "string",
- "statusEndpoint": "string",
- "chunkBytes": 0,
- "nextOffset": 0,
- "expiresAt": "2019-08-24T14:15:22Z",
- "idleExpiresAt": "2019-08-24T14:15:22Z"
}, - "failureCode": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Upload sessions bind the original actor and tenant. CSV, TSV, Excel (.xls/.xlsx), and Parquet inputs are limited to 100 MiB, with contiguous 4 MiB chunks except the final remainder. Stable operation keys make create, finalize, and cancel retryable. Finalization returns a real ingestion job; raw storage paths and byte authority are never returned.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| operationKey | string or null |
{- "operationKey": "string"
}{- "success": true,
- "data": {
- "uploadSessionId": "1b27bbb1-4bfc-4edb-8a10-3614215b96d2",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "version": 0,
- "state": "created",
- "expectedBytes": 0,
- "acknowledgedBytes": 0,
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "cleanupPending": true,
- "transfer": {
- "contentEndpoint": "string",
- "statusEndpoint": "string",
- "chunkBytes": 0,
- "nextOffset": 0,
- "expiresAt": "2019-08-24T14:15:22Z",
- "idleExpiresAt": "2019-08-24T14:15:22Z"
}, - "failureCode": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Upload sessions bind the original actor and tenant. CSV, TSV, Excel (.xls/.xlsx), and Parquet inputs are limited to 100 MiB, with contiguous 4 MiB chunks except the final remainder. Stable operation keys make create, finalize, and cancel retryable. Finalization returns a real ingestion job; raw storage paths and byte authority are never returned.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| Upload-Offset required | integer <int64> Contiguous acknowledged byte offset. An exact chunk retry is idempotent. |
| Upload-Chunk-Sha256 required | string Lowercase SHA-256 of exactly this chunk. |
| Content-Length required | integer <int64> Exact chunk byte count, at most 4194304. Chunked or encoded request bodies are rejected. |
{- "success": true,
- "data": {
- "uploadSessionId": "1b27bbb1-4bfc-4edb-8a10-3614215b96d2",
- "offset": 0,
- "acceptedBytes": 0,
- "nextOffset": 0,
- "sessionVersion": 0
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| projectId required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": [
- {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "label": "string",
- "description": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "createdBy": "string",
- "createdByDisplayName": "string",
- "isDefault": true,
- "linkedCheckpointId": "909c57d6-559a-4f58-958f-ebcf1e06f87c",
- "modelName": "string",
- "primaryMetricValue": 0.1,
- "targetMetric": "string",
- "inputFeatures": {
- "property1": "string",
- "property2": "string"
}
}
], - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| projectId required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Checkpoint request.
| projectId | string or null <uuid> |
| checkpointId | string or null <uuid> |
| label required | string or null |
| description | string or null |
| setAsDefault | boolean |
{- "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "checkpointId": "16673a5e-107b-463f-be42-5cfae1eaa8fe",
- "label": "string",
- "description": "string",
- "setAsDefault": true
}{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| projectId required | string <uuid> Project ID. |
| checkpointId required | string <uuid> Checkpoint ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "label": "string",
- "description": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "createdBy": "string",
- "createdByDisplayName": "string",
- "isDefault": true,
- "modelName": "string",
- "targetMetric": "string",
- "primaryMetricValue": 0.1,
- "metricsPerModel": {
- "property1": [
- {
- "description": "string",
- "displayName": "string",
- "displayValue": 0.1,
- "metricName": "string",
- "minimumValue": 0.1,
- "maximumValue": 0.1,
- "remarks": "string",
- "score": 0,
- "scoreText": "string",
- "value": 0.1,
- "unit": "string",
- "displayType": 0,
- "displayAs": "string",
- "lowestIsBest": true
}
], - "property2": [
- {
- "description": "string",
- "displayName": "string",
- "displayValue": 0.1,
- "metricName": "string",
- "minimumValue": 0.1,
- "maximumValue": 0.1,
- "remarks": "string",
- "score": 0,
- "scoreText": "string",
- "value": 0.1,
- "unit": "string",
- "displayType": 0,
- "displayAs": "string",
- "lowestIsBest": true
}
]
}, - "selectedModels": {
- "property1": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "property2": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}
}, - "inputFeatures": {
- "property1": "string",
- "property2": "string"
}, - "inputSchema": [
- {
- "feature": "string",
- "dtype": "string"
}
], - "lags": {
- "property1": [
- 0
], - "property2": [
- 0
]
}, - "windows": {
- "property1": [
- [
- 0
]
], - "property2": [
- [
- 0
]
]
}, - "dateExtractions": {
- "property1": [
- "string"
], - "property2": [
- "string"
]
}, - "resamplingAggregation": {
- "property1": [
- "string"
], - "property2": [
- "string"
]
}, - "targetFeatures": [
- "string"
], - "problemCategory": 0,
- "modelType": 0
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| projectId required | string <uuid> Project ID. |
| checkpointId required | string <uuid> Checkpoint ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Checkpoint request.
| projectId | string or null <uuid> |
| checkpointId | string or null <uuid> |
| label required | string or null |
| description | string or null |
| setAsDefault | boolean |
{- "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "checkpointId": "16673a5e-107b-463f-be42-5cfae1eaa8fe",
- "label": "string",
- "description": "string",
- "setAsDefault": true
}{- "success": true,
- "data": {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "label": "string",
- "description": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "createdBy": "string",
- "createdByDisplayName": "string",
- "isDefault": true,
- "linkedCheckpointId": "909c57d6-559a-4f58-958f-ebcf1e06f87c",
- "modelName": "string",
- "primaryMetricValue": 0.1,
- "targetMetric": "string",
- "inputFeatures": {
- "property1": "string",
- "property2": "string"
}
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| projectId required | string <uuid> Project ID. |
| checkpointId required | string <uuid> Checkpoint ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Returns code in the specified language showing how to call the prediction API. The code includes project-specific input schema with example values.
Use format=notebook to download a Jupyter notebook instead of raw code.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| projectId required | string <uuid> Project ID. |
| lang | string Default: "python" Programming language: python, curl, csharp (default: python). |
| mode | string Default: "sync" Snippet mode: sync, async, plain, flask (default: sync). |
| format | string Default: "code" Output format: code, notebook (default: code). |
| webhookUrl | string Webhook URL for async mode notifications. |
| checkpointId | string <uuid> Saved model checkpoint ID to use for predictions. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "language": "string",
- "mode": "string",
- "code": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| projectId required | string |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "languages": [
- "string"
], - "modes": [
- "string"
], - "formats": [
- "string"
], - "availableTemplates": [
- "string"
]
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| tenantId | string <uuid> |
| dataSourceId | string <uuid> |
| configurationRevision | integer <int64> |
| expectedVersion | integer <int64> |
| objectType | string or null |
| requestId | string <uuid> |
| viewInstanceId | string <uuid> |
| workspaceGeneration | integer <int64> |
object (ConnectorReadSelection) | |
| resultContractVersion | integer or null <int32> |
object (ConnectorDiscoverySelection) |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "configurationRevision": 0,
- "expectedVersion": 0,
- "objectType": "string",
- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "viewInstanceId": "13f15bd5-f205-442e-b658-b3fe72263545",
- "workspaceGeneration": 0,
- "selection": {
- "catalogSnapshotId": "9eaa151b-dc6a-47bc-ab2b-625c9ed93e67",
- "sourceObjectId": "0c091b1f-a735-44e9-a56c-43435e7a40b6",
- "fields": [
- {
- "sourceFieldId": "a9906e98-5dea-42b3-9be1-dd6538f17102",
- "decimalEncoding": {
- "precision": 0,
- "scale": 0
}, - "confirmLineage": true
}
], - "leadPopulation": "string"
}, - "resultContractVersion": 0,
- "discoverySelection": {
- "kind": "string",
- "catalogSnapshotId": "9eaa151b-dc6a-47bc-ab2b-625c9ed93e67",
- "objectId": "e39ea5f2-2188-47f8-add0-f1976630af5e",
- "referenceBinding": {
- "referenceBindingId": "2481465c-b7df-4270-8e68-8866726a841a",
- "referenceBindingRevision": 0
}
}
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| tenantId | string <uuid> |
| dataSourceId | string <uuid> |
| configurationRevision | integer <int64> |
| expectedVersion | integer <int64> |
| objectType | string or null |
| requestId | string <uuid> |
| viewInstanceId | string <uuid> |
| workspaceGeneration | integer <int64> |
object (ConnectorReadSelection) | |
| resultContractVersion | integer or null <int32> |
object (ConnectorDiscoverySelection) |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "configurationRevision": 0,
- "expectedVersion": 0,
- "objectType": "string",
- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "viewInstanceId": "13f15bd5-f205-442e-b658-b3fe72263545",
- "workspaceGeneration": 0,
- "selection": {
- "catalogSnapshotId": "9eaa151b-dc6a-47bc-ab2b-625c9ed93e67",
- "sourceObjectId": "0c091b1f-a735-44e9-a56c-43435e7a40b6",
- "fields": [
- {
- "sourceFieldId": "a9906e98-5dea-42b3-9be1-dd6538f17102",
- "decimalEncoding": {
- "precision": 0,
- "scale": 0
}, - "confirmLineage": true
}
], - "leadPopulation": "string"
}, - "resultContractVersion": 0,
- "discoverySelection": {
- "kind": "string",
- "catalogSnapshotId": "9eaa151b-dc6a-47bc-ab2b-625c9ed93e67",
- "objectId": "e39ea5f2-2188-47f8-add0-f1976630af5e",
- "referenceBinding": {
- "referenceBindingId": "2481465c-b7df-4270-8e68-8866726a841a",
- "referenceBindingRevision": 0
}
}
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| tenantId | string <uuid> |
| dataSourceId | string <uuid> |
| configurationRevision | integer <int64> |
| expectedVersion | integer <int64> |
| objectType | string or null |
| requestId | string <uuid> |
| viewInstanceId | string <uuid> |
| workspaceGeneration | integer <int64> |
object (ConnectorReadSelection) | |
| resultContractVersion | integer or null <int32> |
object (ConnectorDiscoverySelection) |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "configurationRevision": 0,
- "expectedVersion": 0,
- "objectType": "string",
- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "viewInstanceId": "13f15bd5-f205-442e-b658-b3fe72263545",
- "workspaceGeneration": 0,
- "selection": {
- "catalogSnapshotId": "9eaa151b-dc6a-47bc-ab2b-625c9ed93e67",
- "sourceObjectId": "0c091b1f-a735-44e9-a56c-43435e7a40b6",
- "fields": [
- {
- "sourceFieldId": "a9906e98-5dea-42b3-9be1-dd6538f17102",
- "decimalEncoding": {
- "precision": 0,
- "scale": 0
}, - "confirmLineage": true
}
], - "leadPopulation": "string"
}, - "resultContractVersion": 0,
- "discoverySelection": {
- "kind": "string",
- "catalogSnapshotId": "9eaa151b-dc6a-47bc-ab2b-625c9ed93e67",
- "objectId": "e39ea5f2-2188-47f8-add0-f1976630af5e",
- "referenceBinding": {
- "referenceBindingId": "2481465c-b7df-4270-8e68-8866726a841a",
- "referenceBindingRevision": 0
}
}
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| tenantId | string <uuid> |
| dataSourceId | string <uuid> |
| expectedVersion | integer <int64> |
| configurationRevision | integer <int64> |
| expectedActiveConfigurationRevision | integer or null <int64> |
| testJobId | string <uuid> |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "expectedVersion": 0,
- "configurationRevision": 0,
- "expectedActiveConfigurationRevision": 0,
- "testJobId": "3b94dbfa-2362-4ebb-b399-dfc216a3eec9"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| tenantId | string <uuid> |
| jobId | string <uuid> |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| tenantId | string <uuid> |
| dataSourceId | string <uuid> |
| expectedVersion | integer <int64> |
| bindingId | string <uuid> |
| bindingRevision | integer <int64> |
object (ConnectorConfiguration) | |
object (ConnectorCredentialChange) |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "expectedVersion": 0,
- "bindingId": "5fecb7b6-229e-4247-b81d-92842fd7d9b7",
- "bindingRevision": 0,
- "configuration": {
- "schemaVersion": 0,
- "engine": "string",
- "authType": "string",
- "credentialBindingId": "025a161b-3597-4cd0-a3f8-3e0d415d642b",
- "bindingRevision": 0
}, - "credentialChange": { }
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| tenantId | string <uuid> |
| dataSourceId | string <uuid> |
| expectedVersion | integer <int64> |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "expectedVersion": 0
}{- "success": true,
- "data": [
- {
- "providerId": "string",
- "engine": "string",
- "adapterVersion": "string",
- "configSchemaVersion": 0,
- "authModes": [
- "string"
], - "available": true,
- "unavailableReason": "string",
- "sourceKind": "string"
}
], - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Triggers an asynchronous data fetch operation from the specified object. Supports different data stages (Raw, Transformed, etc.) and pagination. The result will be available through the jobs endpoint once the operation completes.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| objectType required | string Type of object: "dataset", "project", or "scenario". |
| id required | string <uuid> ID of the dataset or project. |
| key | string Optional key for data retrieval. |
| page | integer <int32> Default: 1 Page number (1-based). |
| pageSize | integer <int32> Default: 100 Number of rows per page. |
| previewFactor | integer <int32> Default: 0 Preview factor for sampling (0 = no sampling). |
| fillMissingDates | boolean Default: true Whether to fill missing dates in time series data. |
| dataStage | string Default: "Raw" Data stage to retrieve (Raw, Transformed, etc.). |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| tenantId | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": [
- {
- "version": 0,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "description": "string",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "rowCount": 0,
- "featureCount": 0,
- "dataLoaded": true,
- "dataAnalyzed": true,
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z"
}
], - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}This operation is asynchronous. The returned job ID can be used to poll for status.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Dataset creation request.
| dataSourceId required | string <uuid> ID of the data source to create the dataset from. |
| name required | string or null Name of the dataset. |
| query | string or null SQL query or data specification. |
| orderBy | string or null Column to order the data by (important for time series). |
| accessType | string or null Access type: "private" (user only), "domain" (organization), or "public". |
{- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "name": "string",
- "query": "string",
- "orderBy": "string",
- "accessType": "string"
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| id required | string <uuid> Dataset ID. |
| tenantId | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "version": 0,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "description": "string",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "rowCount": 0,
- "featureCount": 0,
- "dataLoaded": true,
- "dataAnalyzed": true,
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Dataset ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Update request.
| name required | string or null Updated name of the dataset. |
| description | string or null Updated description. |
| query | string or null Updated SQL query. |
| orderBy | string or null Updated ordering column. |
| reloadData | boolean Whether to reload data after update. |
| accessType | string or null Access type. |
{- "name": "string",
- "description": "string",
- "query": "string",
- "orderBy": "string",
- "reloadData": true,
- "accessType": "string"
}{- "success": true,
- "data": {
- "version": 0,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "description": "string",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "rowCount": 0,
- "featureCount": 0,
- "dataLoaded": true,
- "dataAnalyzed": true,
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Dataset ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "archiveState": "string"
}This operation is asynchronous. The data will be fetched from the URL and analyzed.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
URL dataset creation request.
| name required | string or null Name of the dataset. |
| url required | string or null URL to fetch the data from. |
| orderBy | string or null Column to order the data by. |
{- "name": "string",
- "url": "string",
- "orderBy": "string"
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Retired whole-file upload. Returns 400 upload_session_required. Create an artifact upload session, transfer bounded HTTP chunks, then finalize it. Customer FilePath and inline file contents are never accepted as worker input.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> Dataset ID. |
| featureName required | string Name of the feature (column) to update. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Feature settings update request.
required | object (FeatureSettings) |
| reanalyze | boolean Whether to re-analyze data after the update. |
{- "settings": {
- "hide": true,
- "reasonForExclusion": "string",
- "displayName": "string",
- "dataType": "string",
- "nullsPolicy": 0,
- "minValidValue": 0.1,
- "suggestedMinValidValue": 0.1,
- "maxValidValue": 0.1,
- "suggestedMaxValidValue": 0.1,
- "normalize": true,
- "treatZeroAsEmpty": true,
- "language": "string",
- "unit": "string",
- "unitShort": "string",
- "description": "string",
- "origin": "string",
- "featureGroup": "string",
- "displayColor": 0
}, - "reanalyze": true
}{- "success": true,
- "data": {
- "version": 0,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "description": "string",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "rowCount": 0,
- "featureCount": 0,
- "dataLoaded": true,
- "dataAnalyzed": true,
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}This operation is asynchronous. Use the jobs endpoint to poll for status.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Dataset ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Triggers loading of the dataset's data into the training agent's cache. This is typically called before training or analysis operations. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Dataset ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Optional load parameters.
| orderBy | string or null Ordering column for the data. |
| query | string or null SQL query filter. |
| reloadData | boolean Force reload of data even if already cached. |
{- "orderBy": "string",
- "query": "string",
- "reloadData": true
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| tenantId | string <uuid> |
| dataSetId | string <uuid> |
| expectedDataSetRevision | integer <int64> |
| expectedCurrentVersionId | string or null <uuid> |
| expectedSettingsRevisionId | string <uuid> |
| sourceVersion | integer <int64> |
| sourceConfigurationRevision | integer <int64> |
| objectType | string or null |
object (ConnectorReadSelection) | |
| resultContractVersion | integer or null <int32> |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "expectedDataSetRevision": 0,
- "expectedCurrentVersionId": "57e1ea5e-deb0-4a0e-859d-a71871070c67",
- "expectedSettingsRevisionId": "3956b84e-1752-49d3-8d81-bef825e23f00",
- "sourceVersion": 0,
- "sourceConfigurationRevision": 0,
- "objectType": "string",
- "selection": {
- "catalogSnapshotId": "9eaa151b-dc6a-47bc-ab2b-625c9ed93e67",
- "sourceObjectId": "0c091b1f-a735-44e9-a56c-43435e7a40b6",
- "fields": [
- {
- "sourceFieldId": "a9906e98-5dea-42b3-9be1-dd6538f17102",
- "decimalEncoding": {
- "precision": 0,
- "scale": 0
}, - "confirmLineage": true
}
], - "leadPopulation": "string"
}, - "resultContractVersion": 0
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId | string <uuid> |
| name | string or null |
| dataSourceId | string <uuid> |
| sourceVersion | integer <int64> |
| sourceConfigurationRevision | integer <int64> |
| objectType | string or null |
object (ConnectorReadSelection) | |
| visibility | string or null |
| requestId | string or null <uuid> |
| resultContractVersion | integer or null <int32> |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "name": "string",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "sourceVersion": 0,
- "sourceConfigurationRevision": 0,
- "objectType": "string",
- "selection": {
- "catalogSnapshotId": "9eaa151b-dc6a-47bc-ab2b-625c9ed93e67",
- "sourceObjectId": "0c091b1f-a735-44e9-a56c-43435e7a40b6",
- "fields": [
- {
- "sourceFieldId": "a9906e98-5dea-42b3-9be1-dd6538f17102",
- "decimalEncoding": {
- "precision": 0,
- "scale": 0
}, - "confirmLineage": true
}
], - "leadPopulation": "string"
}, - "visibility": "string",
- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "resultContractVersion": 0
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| tenantId | string <uuid> |
| dataSetId | string <uuid> |
| requestId | string <uuid> |
| viewInstanceId | string <uuid> |
| workspaceGeneration | integer <int64> |
| expectedDataSetRevision | integer <int64> |
| expectedCurrentVersionId | string or null <uuid> |
| expectedSettingsRevisionId | string <uuid> |
| expectedSourceConfigurationRevision | integer <int64> |
| expectedSourceVersion | integer <int64> |
| publishOnCompletion | boolean |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "viewInstanceId": "13f15bd5-f205-442e-b658-b3fe72263545",
- "workspaceGeneration": 0,
- "expectedDataSetRevision": 0,
- "expectedCurrentVersionId": "57e1ea5e-deb0-4a0e-859d-a71871070c67",
- "expectedSettingsRevisionId": "3956b84e-1752-49d3-8d81-bef825e23f00",
- "expectedSourceConfigurationRevision": 0,
- "expectedSourceVersion": 0,
- "publishOnCompletion": true
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| candidateId required | string <uuid> |
| tenantId | string <uuid> |
| dataSetId | string <uuid> |
| candidateId | string <uuid> |
| expectedCandidateRevision | integer <int64> |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "candidateId": "10f4deb6-fd4e-4907-a47e-355caf6e449d",
- "expectedCandidateRevision": 0
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| candidateId required | string <uuid> |
| tenantId | string <uuid> |
| dataSetId | string <uuid> |
| candidateId | string <uuid> |
| expectedDataSetRevision | integer <int64> |
| expectedCurrentVersionId | string or null <uuid> |
| expectedSettingsRevisionId | string <uuid> |
| expectedSourceConfigurationRevision | integer <int64> |
| expectedCandidateRevision | integer <int64> |
| preparedViewReceiptId | string <uuid> |
| reviewedDiffSha256 | string or null |
| confirmEmptyReplacement | boolean |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "candidateId": "10f4deb6-fd4e-4907-a47e-355caf6e449d",
- "expectedDataSetRevision": 0,
- "expectedCurrentVersionId": "57e1ea5e-deb0-4a0e-859d-a71871070c67",
- "expectedSettingsRevisionId": "3956b84e-1752-49d3-8d81-bef825e23f00",
- "expectedSourceConfigurationRevision": 0,
- "expectedCandidateRevision": 0,
- "preparedViewReceiptId": "de1a3121-cddb-488e-a418-87862d0f4f40",
- "reviewedDiffSha256": "string",
- "confirmEmptyReplacement": true
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| tenantId | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": [
- {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "type": 0,
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z",
- "status": "string",
- "archiveState": "string",
- "authenticationType": "string",
- "connection": {
- "authenticationType": "string",
- "database": "string",
- "databaseSystem": 0,
- "protocol": "string",
- "server": "string",
- "user": "string",
- "resultsKey": "string",
- "fileName": "string"
}
}
], - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Data source creation request.
object (CreateConnectorSourceRequest) | |
| name required | string or null Name of the data source. |
| type required | integer <int32> (DataSourceType) Enum: 0 1 2 3 4 5 6 |
| accessType | string or null Access type: "private" (user only), "domain" (organization), or "public". |
object (DataSourceConnectionApiRequest) Connection configuration for a data source. |
{- "connector": {
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "name": "string",
- "bindingId": "5fecb7b6-229e-4247-b81d-92842fd7d9b7",
- "bindingRevision": 0,
- "visibility": "string",
- "configuration": {
- "schemaVersion": 0,
- "engine": "string",
- "authType": "string",
- "credentialBindingId": "025a161b-3597-4cd0-a3f8-3e0d415d642b",
- "bindingRevision": 0
}, - "credentialChange": { },
- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6"
}, - "name": "string",
- "type": 0,
- "accessType": "string",
- "connection": {
- "server": "string",
- "database": "string",
- "databaseSystem": 0,
- "user": "string",
- "password": "string",
- "url": "string",
- "originalUrl": "string",
- "protocol": "string",
- "fileName": "string",
- "authenticationType": "string",
- "extraProperties": "string",
- "oAuthDetails": {
- "authorizationEndpoint": "string",
- "clientId": "string",
- "clientSecret": "string",
- "project": "string",
- "redirectUri": "string",
- "scopes": "string",
- "tenantId": "string",
- "tokenEndpoint": "string"
}
}
}{- "success": true,
- "data": {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "type": 0,
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z",
- "status": "string",
- "archiveState": "string",
- "authenticationType": "string",
- "connection": {
- "authenticationType": "string",
- "database": "string",
- "databaseSystem": 0,
- "protocol": "string",
- "server": "string",
- "user": "string",
- "resultsKey": "string",
- "fileName": "string"
}
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| id required | string <uuid> Data source ID. |
| tenantId | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "type": 0,
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z",
- "status": "string",
- "archiveState": "string",
- "authenticationType": "string",
- "connection": {
- "authenticationType": "string",
- "database": "string",
- "databaseSystem": 0,
- "protocol": "string",
- "server": "string",
- "user": "string",
- "resultsKey": "string",
- "fileName": "string"
}
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> Data source ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Update request.
| name required | string or null Updated name of the data source. |
object (DataSourceConnectionApiRequest) Connection configuration for a data source. |
{- "name": "string",
- "connection": {
- "server": "string",
- "database": "string",
- "databaseSystem": 0,
- "user": "string",
- "password": "string",
- "url": "string",
- "originalUrl": "string",
- "protocol": "string",
- "fileName": "string",
- "authenticationType": "string",
- "extraProperties": "string",
- "oAuthDetails": {
- "authorizationEndpoint": "string",
- "clientId": "string",
- "clientSecret": "string",
- "project": "string",
- "redirectUri": "string",
- "scopes": "string",
- "tenantId": "string",
- "tokenEndpoint": "string"
}
}
}{- "success": true,
- "data": {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "type": 0,
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z",
- "status": "string",
- "archiveState": "string",
- "authenticationType": "string",
- "connection": {
- "authenticationType": "string",
- "database": "string",
- "databaseSystem": 0,
- "protocol": "string",
- "server": "string",
- "user": "string",
- "resultsKey": "string",
- "fileName": "string"
}
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> Data source ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "archiveState": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Retired whole-file upload. Returns 400 upload_session_required. Create an artifact upload session, transfer bounded HTTP chunks, then finalize it. Customer FilePath and inline file contents are never accepted as worker input.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "status": "string",
- "version": "string",
- "timestamp": "2019-08-24T14:15:22Z",
- "checks": {
- "property1": {
- "status": "string",
- "description": "string",
- "responseTimeMs": 0
}, - "property2": {
- "status": "string",
- "description": "string",
- "responseTimeMs": 0
}
}
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}{- "success": true,
- "data": {
- "status": "string",
- "version": "string",
- "timestamp": "2019-08-24T14:15:22Z",
- "checks": {
- "property1": {
- "status": "string",
- "description": "string",
- "responseTimeMs": 0
}, - "property2": {
- "status": "string",
- "description": "string",
- "responseTimeMs": 0
}
}
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| executorId | string <uuid> |
| action | string or null |
| targetId | string <uuid> |
| scopeHash | string or null |
| expectedExecutorVersion | integer <int64> |
{- "executorId": "c2906df5-5cb7-4142-a0b8-82249142b757",
- "action": "string",
- "targetId": "cbca1126-180e-4334-9df8-cf82289d378b",
- "scopeHash": "string",
- "expectedExecutorVersion": 0
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| tenantId | string <uuid> |
| outgoingUserId | string <uuid> |
| successorUserId | string <uuid> |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "outgoingUserId": "8c036c4a-9b9f-4c3c-bae7-1789723aefd1",
- "successorUserId": "9950fe45-56d9-45ab-91a9-8e8fcc8331a7"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| previewId | string <uuid> |
| approvalId | string <uuid> |
| operationKey | string or null |
| reason | string or null |
{- "previewId": "aa80f39b-ade0-40b6-909f-f6684cf78d20",
- "approvalId": "23bbe807-dea1-4601-b208-07fd1aaad2b6",
- "operationKey": "string",
- "reason": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| proofId | string <uuid> |
| approvalId | string <uuid> |
| operationKey | string or null |
| reason | string or null |
{- "proofId": "ba01f738-2fa4-454f-ab7c-391c8898b8df",
- "approvalId": "23bbe807-dea1-4601-b208-07fd1aaad2b6",
- "operationKey": "string",
- "reason": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| allowWorkspaceOwnerDeletion | boolean |
{- "allowWorkspaceOwnerDeletion": true
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| allowWorkspaceOwnerDeletion | boolean |
| expectedVersion | integer <int64> |
| scopeHash | string or null |
| operationKey | string or null |
| reason | string or null |
{- "allowWorkspaceOwnerDeletion": true,
- "expectedVersion": 0,
- "scopeHash": "string",
- "operationKey": "string",
- "reason": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| successorUserId | string <uuid> |
{- "successorUserId": "9950fe45-56d9-45ab-91a9-8e8fcc8331a7"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
| successorUserId | string <uuid> |
| expectedInstallationVersion | integer <int64> |
| approvalId | string <uuid> |
| operationKey | string or null |
| reason | string or null |
{- "successorUserId": "9950fe45-56d9-45ab-91a9-8e8fcc8331a7",
- "expectedInstallationVersion": 0,
- "approvalId": "23bbe807-dea1-4601-b208-07fd1aaad2b6",
- "operationKey": "string",
- "reason": "string"
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| id required | string <uuid> Job ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
curl -X GET "https://kanva.human-driven.ai/api/v1/jobs/${JOB_ID}" \ -H "X-API-Key: ${API_KEY}" \ -H "X-Kanva-TenantId: ${TENANT_ID}"
{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string",
- "progress": 0,
- "result": null,
- "errorMessage": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "startedAt": "2019-08-24T14:15:22Z",
- "completedAt": "2019-08-24T14:15:22Z"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}This is an alias for POST /jobs/{id}/cancel, provided for REST convention compliance.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> Job ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string",
- "progress": 0,
- "result": null,
- "errorMessage": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "startedAt": "2019-08-24T14:15:22Z",
- "completedAt": "2019-08-24T14:15:22Z"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| projectId required | string <uuid> Project ID. |
| status | string Optional filter by job status (Pending, InProgress, Completed, Failed). |
| limit | integer <int32> Default: 10 Maximum number of jobs to return (default 10, max 100). |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": [
- {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string",
- "progress": 0,
- "result": null,
- "errorMessage": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "startedAt": "2019-08-24T14:15:22Z",
- "completedAt": "2019-08-24T14:15:22Z"
}
], - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| projectId required | string <uuid> Project ID. |
| command | string Job command type (e.g., TrainModel, TrainBaselineModel). |
| activeOnly | boolean Default: false Return only Pending, SentToAgent or InProgress jobs. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string",
- "progress": 0,
- "result": null,
- "errorMessage": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "startedAt": "2019-08-24T14:15:22Z",
- "completedAt": "2019-08-24T14:15:22Z"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Returns jobs across all projects for the authenticated user. Use query parameters to filter by status or command type.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| projectId | string <uuid> Optional filter by project ID. |
| status | string Optional filter by job status (Pending, Running, Completed, Failed, Cancelled). |
| command | string |
| limit | integer <int32> Default: 20 Maximum number of jobs to return (default 20, max 100). |
| offset | integer <int32> Default: 0 Number of jobs to skip for pagination (default 0). |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "jobs": [
- {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string",
- "progress": 0,
- "result": null,
- "errorMessage": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "startedAt": "2019-08-24T14:15:22Z",
- "completedAt": "2019-08-24T14:15:22Z"
}
], - "total": 0,
- "limit": 0,
- "offset": 0
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> Job ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string",
- "progress": 0,
- "result": null,
- "errorMessage": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "startedAt": "2019-08-24T14:15:22Z",
- "completedAt": "2019-08-24T14:15:22Z"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Returns metadata needed by clients including:
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "dataSetsList": {
- "property1": {
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "requiresPreparedInput": true,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "description": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z",
- "isExample": true,
- "isGlobal": true,
- "fromDataSetId": "6b2a5f67-2efc-4712-abf2-0b04fdedd182",
- "parentDataSetId": "a5d7dc24-82db-486b-bd4c-553408ff4d85",
- "dataLoaded": true,
- "dataAnalyzed": true,
- "rowCount": 0,
- "featureCount": 0,
- "trainingDataFileSize": 0
}, - "property2": {
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "requiresPreparedInput": true,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "dataSourceId": "2b37f84c-d876-441e-9b27-0c3482a7c574",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "description": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z",
- "isExample": true,
- "isGlobal": true,
- "fromDataSetId": "6b2a5f67-2efc-4712-abf2-0b04fdedd182",
- "parentDataSetId": "a5d7dc24-82db-486b-bd4c-553408ff4d85",
- "dataLoaded": true,
- "dataAnalyzed": true,
- "rowCount": 0,
- "featureCount": 0,
- "trainingDataFileSize": 0
}
}, - "dataSourcesList": {
- "property1": {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "dataSourceType": 0,
- "status": "string",
- "archiveState": "string",
- "authenticationType": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z"
}, - "property2": {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "dataSourceType": 0,
- "status": "string",
- "archiveState": "string",
- "authenticationType": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z"
}
}, - "projectsList": {
- "property1": {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "dataSetName": "string",
- "name": "string",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "author": "string",
- "description": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z",
- "problemCategory": 0,
- "status": "string",
- "hasTrainedModel": true,
- "targetFeatureName": "string",
- "targetFeatureDisplayName": "string",
- "timestepFeatureName": "string",
- "timestepFeatureDisplayName": "string",
- "effectiveFrequency": "string"
}, - "property2": {
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "dataSetName": "string",
- "name": "string",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "author": "string",
- "description": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z",
- "problemCategory": 0,
- "status": "string",
- "hasTrainedModel": true,
- "targetFeatureName": "string",
- "targetFeatureDisplayName": "string",
- "timestepFeatureName": "string",
- "timestepFeatureDisplayName": "string",
- "effectiveFrequency": "string"
}
}, - "availableBaselines": {
- "Unknown": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
], - "BinaryClassification": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
], - "Forecasting": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
], - "MulticlassClassification": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
], - "Regression": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
]
}, - "availableModels": {
- "Unknown": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
], - "BinaryClassification": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
], - "Forecasting": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
], - "MulticlassClassification": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
], - "Regression": [
- {
- "name": "string",
- "remarks": "string",
- "canHandleMissingValues": true,
- "availableParameters": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "isDefault": true
}
]
}, - "aggregationFunctions": {
- "property1": "string",
- "property2": "string"
}, - "builtinHolidays": {
- "property1": "string",
- "property2": "string"
}, - "dataTypes": {
- "property1": "string",
- "property2": "string"
}, - "modelTypes": {
- "property1": "string",
- "property2": "string"
}, - "timeStepAggregations": {
- "property1": "string",
- "property2": "string"
}, - "userActions": {
- "property1": "string",
- "property2": "string"
}, - "featureExplainers": {
- "property1": [
- "string"
], - "property2": [
- "string"
]
}, - "dataStages": [
- "string"
], - "nullPolicies": [
- "string"
], - "trainingProfiles": [
- "string"
]
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
| tenantId required | string <uuid> |
| membershipId required | string <uuid> |
The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| membershipId required | string <uuid> |
| keyId required | string <uuid> |
| tenantId | string <uuid> |
| membershipId | string <uuid> |
| principalId | string <uuid> |
| keyId | string <uuid> |
| expectedMembershipVersion | integer <int64> |
| expectedPrincipalVersion | integer <int64> |
| expectedKeyVersion | integer <int64> |
| operationKey | string or null |
| reason | string or null |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "membershipId": "8072cc74-4782-4f2c-827c-699c48ce2092",
- "principalId": "0a52818d-1e0c-4e64-848e-4d04f9e914e5",
- "keyId": "468bcefd-6536-4844-8249-aff3ecb2ef7b",
- "expectedMembershipVersion": 0,
- "expectedPrincipalVersion": 0,
- "expectedKeyVersion": 0,
- "operationKey": "string",
- "reason": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId | string <uuid> |
| successorUserId | string <uuid> |
| effect | string (OwnershipEffect) Enum: "unknown" "workspaceHandover" "ownerRoleGrant" |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "successorUserId": "9950fe45-56d9-45ab-91a9-8e8fcc8331a7",
- "effect": "unknown"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| previewId | string <uuid> |
| operationKey | string or null |
| reason | string or null |
{- "previewId": "aa80f39b-ade0-40b6-909f-f6684cf78d20",
- "operationKey": "string",
- "reason": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
| scopeHash | string or null |
{- "expectedVersion": 0,
- "operationKey": "string",
- "scopeHash": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
| scopeHash | string or null |
{- "expectedVersion": 0,
- "operationKey": "string",
- "scopeHash": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
| scopeHash | string or null |
{- "expectedVersion": 0,
- "operationKey": "string",
- "scopeHash": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId | string <uuid> |
| userId | string <uuid> |
| role | string (TenantRole) Enum: "unknown" "viewer" "member" "admin" "owner" |
| status | string (MembershipStatus) Enum: "unknown" "active" "suspended" "removed" |
| expectedVersion | integer or null <int64> |
| operationKey | string or null |
| reason | string or null |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "userId": "2c4a230c-5085-4924-a3e1-25fb4fc5965b",
- "role": "unknown",
- "status": "unknown",
- "expectedVersion": 0,
- "operationKey": "string",
- "reason": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| tenantId | string <uuid> |
| successorUserId | string <uuid> |
| effect | string (OwnershipEffect) Enum: "unknown" "workspaceHandover" "ownerRoleGrant" |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "successorUserId": "9950fe45-56d9-45ab-91a9-8e8fcc8331a7",
- "effect": "unknown"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| previewId | string <uuid> |
| operationKey | string or null |
| reason | string or null |
{- "previewId": "aa80f39b-ade0-40b6-909f-f6684cf78d20",
- "operationKey": "string",
- "reason": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
| tenantId required | string <uuid> |
| offerId required | string <uuid> |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| offerId required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
| scopeHash | string or null |
{- "expectedVersion": 0,
- "operationKey": "string",
- "scopeHash": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| offerId required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
| scopeHash | string or null |
{- "expectedVersion": 0,
- "operationKey": "string",
- "scopeHash": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| offerId required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
| scopeHash | string or null |
{- "expectedVersion": 0,
- "operationKey": "string",
- "scopeHash": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| noticeId required | string <uuid> |
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": [
- {
- "projectSubtype": "string",
- "currentInputConfigurationId": "655ae505-595a-4593-8d20-8116c0ee79e2",
- "inputConfigurationRevision": 0,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "description": "string",
- "datasetId": "6586f21b-ad4d-4d06-a309-712af47184a2",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "problemCategory": 0,
- "hasTrainedModel": true,
- "modelName": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z"
}
], - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Project creation request.
| projectSubtype | string or null |
object (SnapshotProjectInputSelection) | |
object (ReviewedProjectInputSelection) | |
object (CopyProjectInput) | |
| workspaceGeneration | integer <int64> |
| datasetId required | string <uuid> ID of the dataset to use for this project. |
| name required | string or null Name of the project. |
| description | string or null Description of the project. |
| problemCategory required | integer <int32> (ProblemCategory) Enum: 0 1 2 3 4 |
| accessType | string or null New projects use "private". Share the created project through the resource-sharing API. |
{- "projectSubtype": "string",
- "snapshotInput": {
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "dataSetVersionId": "fdb23284-4fd8-46f7-ad61-ef245c7eb918",
- "dataViewVersionId": "0e0c81a7-ffd1-442d-84f5-c5b690a8a531",
- "operationKey": "string"
}, - "inputSelection": {
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "dataSetVersionId": "fdb23284-4fd8-46f7-ad61-ef245c7eb918",
- "dataViewVersionId": "0e0c81a7-ffd1-442d-84f5-c5b690a8a531",
- "roles": {
- "targetFeatureId": "cfabb4de-38e7-44b6-8f4c-f27ff73c42c1",
- "predictorFeatureIds": [
- "497f6eca-6276-4993-bfeb-53cbbbba6f08"
], - "customerKeyFeatureId": "2ff5b27f-4c27-4103-b69f-48e905a52f1b",
- "observationTimeFeatureId": "06d87f96-2ce9-47ec-ada7-db8b91952254",
- "windowEndFeatureId": "971bea9a-87ea-43a9-827e-2966f5f37bca"
}, - "projectInputReviewReceiptId": "1ce5b146-7487-4179-a744-1e6489df0b8f",
- "reviewedPolicySha256": "string"
}, - "copyInput": {
- "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "expectedConfigurationRevision": 0,
- "operationKey": "string"
}, - "workspaceGeneration": 0,
- "datasetId": "6586f21b-ad4d-4d06-a309-712af47184a2",
- "name": "string",
- "description": "string",
- "problemCategory": 0,
- "accessType": "string"
}{- "success": true,
- "data": {
- "projectSubtype": "string",
- "currentInputConfigurationId": "655ae505-595a-4593-8d20-8116c0ee79e2",
- "inputConfigurationRevision": 0,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "description": "string",
- "datasetId": "6586f21b-ad4d-4d06-a309-712af47184a2",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "problemCategory": 0,
- "hasTrainedModel": true,
- "modelName": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "projectSubtype": "string",
- "currentInputConfigurationId": "655ae505-595a-4593-8d20-8116c0ee79e2",
- "inputConfigurationRevision": 0,
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "name": "string",
- "description": "string",
- "datasetId": "6586f21b-ad4d-4d06-a309-712af47184a2",
- "owner": "string",
- "ownerDisplayName": "string",
- "creatorDisplayName": "string",
- "problemCategory": 0,
- "hasTrainedModel": true,
- "modelName": "string",
- "createdAt": "2019-08-24T14:15:22Z",
- "updatedAt": "2019-08-24T14:15:22Z"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Metadata update request.
| problemDomain | string or null Problem domain and business logic description. |
| problemSolutionReason | string or null Why we are trying to solve this problem. |
| businessValue | string or null Expected business value from the solution. |
| dataAvailable | string or null Description of available data. |
| dataCollection | string or null How the data was collected. |
| successDefinition | string or null How success will be measured. |
| runtime | string or null Expected runtime environment. |
| constraints | string or null Expected constraints. |
{- "problemDomain": "string",
- "problemSolutionReason": "string",
- "businessValue": "string",
- "dataAvailable": "string",
- "dataCollection": "string",
- "successDefinition": "string",
- "runtime": "string",
- "constraints": "string"
}{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Baseline training establishes a simple reference model to compare against more complex models. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Baseline training request.
| trainingProfile | string or null Training profile to use. |
object (WebhookConfig) Webhook configuration for async operation callbacks. |
{- "trainingProfile": "string",
- "webhook": {
- "url": "string",
- "secret": "string"
}
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}This operation is asynchronous. Use the jobs endpoint to poll for status.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Training request.
| trainingProfile | string or null Training profile to use (Fast, Balanced, Thorough). |
| previewFactor | integer <int32> Preview factor for visualization (0 = no preview). |
object (WebhookConfig) Webhook configuration for async operation callbacks. |
{- "trainingProfile": "string",
- "previewFactor": 0,
- "webhook": {
- "url": "string",
- "secret": "string"
}
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}This operation searches for the best hyperparameters for the selected model. Requires that a model has already been trained. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Optimization request.
| trainingProfile | string or null Training profile to use. |
object (WebhookConfig) Webhook configuration for async operation callbacks. |
{- "trainingProfile": "string",
- "webhook": {
- "url": "string",
- "secret": "string"
}
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Reset request.
| resetBaselineResults | boolean Whether to reset baseline training results. |
| resetTrainingResults | boolean Whether to reset model training results. |
{- "resetBaselineResults": true,
- "resetTrainingResults": true
}{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Requires that a model has been trained for this project. Use sync=true query parameter for synchronous response (waits for prediction result). Default is async mode which returns a job ID for polling.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| sync | boolean Default: false If true, wait for prediction result. If false (default), return job ID. |
| timeout | integer <int32> Default: 60 Timeout in seconds for sync mode (default: 60, max: 300). |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Prediction request with input values.
required | object or null Input values for prediction. Key is feature name, value is list of values. |
| checkpointId | string or null <uuid> Optional checkpoint ID. If not specified, uses default checkpoint or last trained model. |
| checkpointLabel | string or null Optional checkpoint label. Alternative to checkpointId for specifying which model to use. If both checkpointId and checkpointLabel are provided, checkpointId takes precedence. |
{- "input": {
- "property1": [
- "string"
], - "property2": [
- "string"
]
}, - "checkpointId": "16673a5e-107b-463f-be42-5cfae1eaa8fe",
- "checkpointLabel": "string"
}{- "success": true,
- "data": {
- "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "predictions": [
- "string"
], - "probabilities": [
- 0.1
], - "dates": [
- "string"
], - "shapValues": [
- [
- 0.1
]
], - "result": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Discords are subsequences in the data that are maximally different from all other subsequences. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Discord detection parameters.
| chunkSize | integer <int32> Size of the chunk to analyze for discord detection. |
| maxDiscords | integer <int32> Maximum number of discords to return. |
object (WebhookConfig) Webhook configuration for async operation callbacks. |
{- "chunkSize": 0,
- "maxDiscords": 0,
- "webhook": {
- "url": "string",
- "secret": "string"
}
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Identifies data points that deviate significantly from the expected trend. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Outlier detection parameters.
| outlierThresholdFactor | number <double> Threshold factor for outlier detection (higher = fewer outliers). |
| windowSize | integer <int32> Window size for trend calculation. |
object (WebhookConfig) Webhook configuration for async operation callbacks. |
{- "outlierThresholdFactor": 0.1,
- "windowSize": 0,
- "webhook": {
- "url": "string",
- "secret": "string"
}
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Returns samples from the training data that are most similar to the specified sample. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Similar samples request parameters.
| sourceSampleIndex | integer <int64> Index of the source sample to find similar samples for. |
object or null Alternatively, provide the source sample values directly. | |
| samplesCount | integer <int32> Number of similar samples to return. |
{- "sourceSampleIndex": 0,
- "sourceSample": {
- "property1": null,
- "property2": null
}, - "samplesCount": 0
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Generates natural language explanations for model behavior, feature importance, or other visualizations. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Interpretation request.
| interpretationType | string (InterpretationTypeApi) Enum: "FeatureImportanceChart" "ConfusionMatrix" "ProbabilityVsAccuracyChart" Type of interpretation to request. |
| imageData | string or null Optional base64 encoded image data (e.g., chart screenshot) to include in interpretation. |
object (WebhookConfig) Webhook configuration for async operation callbacks. |
{- "interpretationType": "FeatureImportanceChart",
- "imageData": "string",
- "webhook": {
- "url": "string",
- "secret": "string"
}
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": [
- {
- "id": "string",
- "title": "string",
- "description": "string",
- "color": "string",
- "fileName": "string",
- "rows": 0,
- "updatedAt": "2019-08-24T14:15:22Z",
- "endDate": "2019-08-24T14:15:22Z",
- "inputFeatures": {
- "property1": {
- "numberOfValues": 0,
- "dType": "string"
}, - "property2": {
- "numberOfValues": 0,
- "dType": "string"
}
}, - "status": "string",
- "errorMessage": "string",
- "checkpointId": "16673a5e-107b-463f-be42-5cfae1eaa8fe",
- "checkpointLabel": "string",
- "dependentProjectCheckpoints": {
- "property1": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "property2": "497f6eca-6276-4993-bfeb-53cbbbba6f08"
}
}
], - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}If fileData is not provided, the scenario will be auto-generated based on project configuration.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Scenario creation request.
| title required | string or null Title of the scenario. |
| description | string or null Description of the scenario. |
| color | string or null Color for visual identification (hex code). |
| fileData | string or null Base64 encoded file data for the scenario source file. If not provided, the scenario will be auto-generated. |
| fileName | string or null Original filename if uploading a file. |
| endDate | string or null <date-time> End date for auto-generated scenarios. |
| checkpointLabel | string or null Optional custom label for the checkpoint when creating a new one (checkpointId is null). If not provided, the scenario title is used. |
| checkpointId | string or null <uuid> Reference to an existing checkpoint (saved model) to use for this scenario. If null, a new checkpoint is created from the current model. |
object or null Checkpoints for dependent projects. Key: Dependent project ID, Value: Checkpoint ID from that project. Use null as value to indicate "Save current model" for that dependent project. |
{- "title": "string",
- "description": "string",
- "color": "string",
- "fileData": "string",
- "fileName": "string",
- "endDate": "2019-08-24T14:15:22Z",
- "checkpointLabel": "string",
- "checkpointId": "16673a5e-107b-463f-be42-5cfae1eaa8fe",
- "dependentProjectCheckpoints": {
- "property1": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "property2": "497f6eca-6276-4993-bfeb-53cbbbba6f08"
}
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| scenarioId required | string Scenario ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": null,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Packages the trained model and related assets for use outside of Kanva. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Export configuration.
| modelType | string (ModelTypeApi) Enum: "Baseline" "Trained" Model type for export. |
object (WebhookConfig) Webhook configuration for async operation callbacks. |
{- "modelType": "Baseline",
- "webhook": {
- "url": "string",
- "secret": "string"
}
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "bundleId": "string",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Validates the current project graph before checking delivery availability. Returns an authenticated descriptor for the immutable exported artifact. Stored artifact locators and job results are never returned as download URLs.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Returns the latest visible immutable model export descriptor and its authenticated same-origin content endpoint. It never returns a raw storage URL. Download with the same current session or API key and X-Kanva-TenantId; range requests are supported.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "data": null,
- "success": true,
- "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}For classification projects, this finds the optimal decision threshold that maximizes the model benefit based on the configured business value metrics. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Updates the project's ML configuration including features, target columns, forecasting settings, and other training-related properties. This may trigger a re-analysis of the data if specified.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Project properties to update.
object or null | |
| convertMissingToZero | boolean |
| dataSplitRatio | number or null <float> |
object or null | |
object or null | |
| description | string or null |
| displayGroupingFeatures | Array of strings or null |
object or null | |
| forceReload | boolean |
object or null | |
object (ForecastingProjectConfig) | |
| groupingFeatures | Array of strings or null |
object or null | |
object (ModelBenefit) | |
object or null | |
| name | string or null |
| occurrenceThreshold | integer or null <int64> |
Array of objects or null (PredictionScenario) | |
| projectId required | string <uuid> |
| reanalyze | boolean |
| resampling | string or null |
object or null | |
object or null | |
object or null | |
| splitIndex | integer or null <int64> |
| targetFeatures | Array of strings or null |
| timestepFeature | string or null |
object (TrainingDataSettings) | |
object or null |
{- "bookmarkedRows": {
- "property1": "string",
- "property2": "string"
}, - "convertMissingToZero": true,
- "dataSplitRatio": 0.1,
- "dateExtractions": {
- "property1": [
- "string"
], - "property2": [
- "string"
]
}, - "dependentProjectFeatures": {
- "property1": {
- "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "datasetId": "6586f21b-ad4d-4d06-a309-712af47184a2",
- "timestepFeatureName": "string",
- "aggregationMethod": "string",
- "sourceEffectiveFrequency": "string"
}, - "property2": {
- "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "datasetId": "6586f21b-ad4d-4d06-a309-712af47184a2",
- "timestepFeatureName": "string",
- "aggregationMethod": "string",
- "sourceEffectiveFrequency": "string"
}
}, - "description": "string",
- "displayGroupingFeatures": [
- "string"
], - "features": {
- "property1": {
- "active": true,
- "reasonForExclusion": "string",
- "futureCovariant": true,
- "pastCovariant": true,
- "external": true,
- "plotted": true,
- "parameters": "string"
}, - "property2": {
- "active": true,
- "reasonForExclusion": "string",
- "futureCovariant": true,
- "pastCovariant": true,
- "external": true,
- "plotted": true,
- "parameters": "string"
}
}, - "forceReload": true,
- "excludedRows": {
- "property1": "string",
- "property2": "string"
}, - "forecastingConfig": {
- "inputLength": 0,
- "offsetLength": 0,
- "predictionLength": 0
}, - "groupingFeatures": [
- "string"
], - "lags": {
- "property1": [
- 0
], - "property2": [
- 0
]
}, - "modelBenefit": {
- "benefitType": 0,
- "calculationCurrency": "string",
- "interventionSuccessRate": 0.1,
- "falseNegativeMonetaryValue": 0.1,
- "falseNegativeMonetaryValueColumn": "string",
- "falsePositiveMonetaryValue": 0.1,
- "falsePositiveMonetaryValueColumn": "string",
- "truePositiveMonetaryValue": 0.1,
- "truePositiveColumnMonetaryValue": "string"
}, - "modelParameters": {
- "property1": "string",
- "property2": "string"
}, - "name": "string",
- "occurrenceThreshold": 0,
- "predictionScenarios": [
- {
- "color": "string",
- "description": "string",
- "endDate": "2019-08-24T14:15:22Z",
- "fileName": "string",
- "filePath": "string",
- "id": "string",
- "rows": 0,
- "title": "string",
- "updatedAt": "2019-08-24T14:15:22Z",
- "inputFeatures": {
- "property1": {
- "numberOfValues": 0,
- "dType": "string"
}, - "property2": {
- "numberOfValues": 0,
- "dType": "string"
}
}, - "checkpointId": "16673a5e-107b-463f-be42-5cfae1eaa8fe",
- "checkpointLabel": "string",
- "dependentProjectCheckpoints": {
- "property1": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "property2": "497f6eca-6276-4993-bfeb-53cbbbba6f08"
}, - "status": 0,
- "errorMessage": "string"
}
], - "projectId": "5a8591dd-4039-49df-9202-96385ba3eff8",
- "reanalyze": true,
- "resampling": "string",
- "resamplingAggregation": {
- "property1": [
- "string"
], - "property2": [
- "string"
]
}, - "selectedBaselines": {
- "property1": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "property2": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}
}, - "selectedModels": {
- "property1": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}, - "property2": {
- "property1": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}, - "property2": {
- "name": "string",
- "remarks": "string",
- "defaultValue": "string",
- "type": "string",
- "value": "string"
}
}
}, - "splitIndex": 0,
- "targetFeatures": [
- "string"
], - "timestepFeature": "string",
- "trainingDataSettings": {
- "dataSplitRatio": 0.1,
- "featureTransformations": [
- "string"
], - "fillMissingDates": true,
- "fillMissingTarget": true,
- "randomSeed": 0,
- "stratifiedSplit": true,
- "trainingDataStartIndex": 0,
- "trainingDataEndIndex": 0
}, - "windows": {
- "property1": [
- [
- 0
]
], - "property2": [
- [
- 0
]
]
}
}{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Triggers loading of data from the project's associated dataset. This is typically called after making configuration changes that require fresh data. This operation is asynchronous.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires configured execution admission, an enrolled worker, current job authority, and finite capacity. The server pins the admitted resource graph and one worker attempt before dispatch. Unavailable execution dependencies return 503 execution_unavailable before work is submitted.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "jobId": "9d222c6d-893e-4e79-8201-3c9ca16a0f39",
- "status": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Switches the project to use a different saved configuration. Configurations represent different ML setups (features, parameters) that can be compared.
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> Project ID. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Configuration switch request.
| configuration required | string or null Configuration identifier to switch to. |
{- "configuration": "string"
}{- "success": true,
- "data": {
- "success": true,
- "message": "string"
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| projectId | string <uuid> The project being shared. Supply exactly one project or dataset. |
| datasetId | string <uuid> The dataset being shared. Supply exactly one project or dataset. |
| search | string Optional literal, case-insensitive display-name substring, trimmed and limited to 128 characters. |
| page | integer <int32> Default: 1 One-based page number. Pages beyond the results return an empty items list. |
| pageSize | integer <int32> Default: 20 Number of members per page, from 1 to 100; defaults to 20. |
| membershipIds | Array of strings <uuid> [ items <uuid > ] Optional 1 to 100 distinct membership UUIDs, supplied as repeated query parameters. Combined with search by intersection; unavailable members are omitted. |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
{- "success": true,
- "data": {
- "items": [
- {
- "membershipId": "8072cc74-4782-4f2c-827c-699c48ce2092",
- "userId": "2c4a230c-5085-4924-a3e1-25fb4fc5965b",
- "displayName": "string",
- "role": "unknown",
- "version": 0,
- "hasAccess": true,
- "accessibleDatasetCount": 0,
- "requiredDatasetCount": 0
}
], - "page": 0,
- "pageSize": 0,
- "totalCount": 0
}, - "error": {
- "code": "string",
- "message": "string",
- "details": null
}
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| kind | string or null |
| id | string <uuid> |
| membershipId | string <uuid> |
| expectedVersion | integer <int64> |
| expectedMembershipVersion | integer <int64> |
| operationKey | string or null |
{- "kind": "string",
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "membershipId": "8072cc74-4782-4f2c-827c-699c48ce2092",
- "expectedVersion": 0,
- "expectedMembershipVersion": 0,
- "operationKey": "string"
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
| projectId | string <uuid> |
| datasetId | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| visibility | string (ResourceVisibility) Enum: "unknown" "private" "workspace" "selectedMembers" |
| expectedVersion | integer <int64> |
{- "visibility": "unknown",
- "expectedVersion": 0
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| visibility | string (ResourceVisibility) Enum: "unknown" "private" "workspace" "selectedMembers" |
| expectedVersion | integer <int64> |
{- "visibility": "unknown",
- "expectedVersion": 0
}Workspace resources require the explicit X-Kanva-TenantId header, live membership, and current resource visibility. API-key operations additionally require their explicit granular scope; scope never grants access to a hidden resource.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| X-Kanva-TenantId required | string <uuid> Explicit workspace selector (UUID), never authority. It must match the current membership and, for API keys, the key's bound tenant. Resource parents and visibility are revalidated in the same command. |
| visibility | string (ResourceVisibility) Enum: "unknown" "private" "workspace" "selectedMembers" |
| expectedVersion | integer <int64> |
{- "visibility": "unknown",
- "expectedVersion": 0
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| caseId | string <uuid> |
| expectedCaseVersion | integer <int64> |
| explanation | string or null |
| operationKey | string or null |
{- "caseId": "af51d69f-996a-4891-a745-aadfcdec225a",
- "expectedCaseVersion": 0,
- "explanation": "string",
- "operationKey": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| tenantId | string <uuid> |
Array of objects or null (SupportResourceSelection) | |
Array of objects or null (SupportDatasetSelection) | |
| operationKey | string or null |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "roots": [
- {
- "kind": "string",
- "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08",
- "read": "string"
}
], - "previews": [
- {
- "dataSetId": "4d7600aa-4d53-4144-aa57-ce0c5b68b1da",
- "versionId": "14707576-2549-4848-82ed-f68f8a1b47c7",
- "rows": [
- 0
], - "columns": [
- "string"
]
}
], - "operationKey": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
| tenantId required | string <uuid> |
| cursor | string |
| pageSize | integer <int32> Default: 25 |
The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
| tenantId required | string <uuid> |
| id required | string <uuid> |
The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| id required | string <uuid> |
| requestId | string <uuid> |
| expectedRequestVersion | integer <int64> |
| nodeIds | Array of strings or null <uuid> [ items <uuid > ] |
| expiresAt | string <date-time> |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedRequestVersion": 0,
- "nodeIds": [
- "497f6eca-6276-4993-bfeb-53cbbbba6f08"
], - "expiresAt": "2019-08-24T14:15:22Z",
- "operationKey": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| id required | string <uuid> |
| requestId | string <uuid> |
| expectedRequestVersion | integer <int64> |
| consentId | string or null <uuid> |
| expectedConsentVersion | integer or null <int64> |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedRequestVersion": 0,
- "consentId": "e521cf62-a45f-49c5-8372-94853fffeb55",
- "expectedConsentVersion": 0,
- "operationKey": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| id required | string <uuid> |
| requestId | string <uuid> |
| expectedRequestVersion | integer <int64> |
| consentId | string or null <uuid> |
| expectedConsentVersion | integer or null <int64> |
| operationKey | string or null |
{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "expectedRequestVersion": 0,
- "consentId": "e521cf62-a45f-49c5-8372-94853fffeb55",
- "expectedConsentVersion": 0,
- "operationKey": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
| tenantId required | string <uuid> |
| offset | integer <int32> Default: 0 |
The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
An ordinary successor's Owner promotion creates an ownerRoleGrant offer and returns 202 with state=pending. Membership and resource owners remain unchanged until the exact recipient accepts. Assignment to the designated organization owner completes immediately with notification. Exact retries return the original result.
| tenantId required | string <uuid> |
| tenantId | string <uuid> |
| userId | string <uuid> |
| role | string (TenantRole) Enum: "unknown" "viewer" "member" "admin" "owner" |
| status | string (MembershipStatus) Enum: "unknown" "active" "suspended" "removed" |
| expectedVersion | integer or null <int64> |
| operationKey | string or null |
| reason | string or null |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "userId": "2c4a230c-5085-4924-a3e1-25fb4fc5965b",
- "role": "unknown",
- "status": "unknown",
- "expectedVersion": 0,
- "operationKey": "string",
- "reason": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
An ordinary successor's Owner promotion creates an ownerRoleGrant offer and returns 202 with state=pending. Membership and resource owners remain unchanged until the exact recipient accepts. Assignment to the designated organization owner completes immediately with notification. Exact retries return the original result.
| tenantId required | string <uuid> |
| membershipId required | string <uuid> |
| tenantId | string <uuid> |
| userId | string <uuid> |
| role | string (TenantRole) Enum: "unknown" "viewer" "member" "admin" "owner" |
| status | string (MembershipStatus) Enum: "unknown" "active" "suspended" "removed" |
| expectedVersion | integer or null <int64> |
| operationKey | string or null |
| reason | string or null |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "userId": "2c4a230c-5085-4924-a3e1-25fb4fc5965b",
- "role": "unknown",
- "status": "unknown",
- "expectedVersion": 0,
- "operationKey": "string",
- "reason": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| membershipId required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
| reason | string or null |
{- "expectedVersion": 0,
- "operationKey": "string",
- "reason": "string"
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| tenantId required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
| reason | string or null |
{- "expectedVersion": 0,
- "operationKey": "string",
- "reason": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| workspaceName | string or null |
| operationKey | string or null |
| expectedOptionsVersion | string or null |
| expectedCustomerAccountVersion | integer or null <int64> |
| expectedCustomerManagementVersion | integer or null <int64> |
| privacyNoticeVersion | string or null |
| termsVersion | string or null |
{- "workspaceName": "string",
- "operationKey": "string",
- "expectedOptionsVersion": "string",
- "expectedCustomerAccountVersion": 0,
- "expectedCustomerManagementVersion": 0,
- "privacyNoticeVersion": "string",
- "termsVersion": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| customerAccountId | string <uuid> |
| successorUserId | string <uuid> |
| expectedVersion | integer <int64> |
| expectedManagementVersion | integer <int64> |
| operationKey | string or null |
{- "customerAccountId": "d8c60791-7301-441c-98e8-5bea9a162d9b",
- "successorUserId": "9950fe45-56d9-45ab-91a9-8e8fcc8331a7",
- "expectedVersion": 0,
- "expectedManagementVersion": 0,
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "expectedVersion": 0,
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "expectedVersion": 0,
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
| id required | string <uuid> |
| expectedVersion | integer <int64> |
| expectedManagementVersion | integer <int64> |
| operationKey | string or null |
| approvalId | string or null <uuid> |
| scopeHash | string or null |
| reason | string or null |
{- "expectedVersion": 0,
- "expectedManagementVersion": 0,
- "operationKey": "string",
- "approvalId": "23bbe807-dea1-4601-b208-07fd1aaad2b6",
- "scopeHash": "string",
- "reason": "string"
}Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| tenantId required | string <uuid> |
| expectedTenantVersion | integer <int64> |
| expectedOrganizationPolicyVersion | integer <int64> |
| workspaceConfirmation | string or null |
| operationKey | string or null |
| reason | string or null |
{- "expectedTenantVersion": 0,
- "expectedOrganizationPolicyVersion": 0,
- "workspaceConfirmation": "string",
- "operationKey": "string",
- "reason": "string"
}{- "requestId": "d385ab22-0f51-4b97-9ecd-b8ff3fd4fcb6",
- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "state": "string",
- "version": 0,
- "createdAt": "2019-08-24T14:15:22Z",
- "frozenAt": "2019-08-24T14:15:22Z",
- "completedAt": "2019-08-24T14:15:22Z",
- "recoveryEvidence": "string",
- "pendingReason": "string",
- "canCancel": true
}The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| tenantId required | string <uuid> |
| requestId required | string <uuid> |
The route tenantId selects the workspace. Matching current membership, role, target, and expected versions are checked by the shared service; route or body identifiers do not grant authority.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| tenantId required | string <uuid> |
| requestId required | string <uuid> |
| expectedVersion | integer <int64> |
| operationKey | string or null |
{- "expectedVersion": 0,
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| tenantId | string <uuid> |
| expectedVersion | integer <int64> |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "expectedVersion": 0
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| tenantId | string <uuid> |
| expectedTenantVersion | integer <int64> |
| approvalId | string <uuid> |
| scopeHash | string or null |
| operationKey | string or null |
| reason | string or null |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "expectedTenantVersion": 0,
- "approvalId": "23bbe807-dea1-4601-b208-07fd1aaad2b6",
- "scopeHash": "string",
- "operationKey": "string",
- "reason": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| tenantId | string <uuid> |
| reason | string or null |
| reviewBy | string <date-time> |
| operationKey | string or null |
{- "tenantId": "f97df110-f4de-492e-8849-4a6af68026b0",
- "reason": "string",
- "reviewBy": "2019-08-24T14:15:22Z",
- "operationKey": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| holdId required | string <uuid> |
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| holdId | string <uuid> |
| expectedVersion | integer <int64> |
| approvalId | string <uuid> |
| operationKey | string or null |
| reason | string or null |
{- "holdId": "05363803-5510-4d71-8d1f-307021f9ad73",
- "expectedVersion": 0,
- "approvalId": "23bbe807-dea1-4601-b208-07fd1aaad2b6",
- "operationKey": "string",
- "reason": "string"
}Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| customerId required | string <uuid> |
| action | string or null |
| offerId | string or null <uuid> |
{- "action": "string",
- "offerId": "42da58f8-9040-4cf5-98ce-bce9965cca0d"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| customerAccountId | string <uuid> |
| offerId | string <uuid> |
| expectedVersion | integer <int64> |
| expectedManagementVersion | integer <int64> |
| approvalId | string <uuid> |
| scopeHash | string or null |
| operationKey | string or null |
| reason | string or null |
{- "customerAccountId": "d8c60791-7301-441c-98e8-5bea9a162d9b",
- "offerId": "42da58f8-9040-4cf5-98ce-bce9965cca0d",
- "expectedVersion": 0,
- "expectedManagementVersion": 0,
- "approvalId": "23bbe807-dea1-4601-b208-07fd1aaad2b6",
- "scopeHash": "string",
- "operationKey": "string",
- "reason": "string"
}Browser requests require HTTPS, an exact configured Origin, protected browser cookies, and X-Kanva-CSRF bound to the current purpose session. Refresh the token after session binding. Never put credentials or antiforgery tokens in URLs.
Requires a current installation-operator role and the operation's approval policy in addition to the application session. Workspace ownership, API keys, and legacy admin flags cannot grant this role.
Human application session only. Deletion requires exact reviewed versions, operationKey, and workspace confirmation. A durable freeze receipt closes workspace admission; cleanup waits for worker stop acknowledgments, active readers, and retention holds. Cancellation is allowed only before that freeze. Operator and commercial actions also require their independently approved scope.
| customerId required | string <uuid> |
| expectedVersion | integer <int64> |
| expectedManagementVersion | integer <int64> |
| operationKey | string or null |
| approvalId | string or null <uuid> |
| scopeHash | string or null |
| reason | string or null |
{- "expectedVersion": 0,
- "expectedManagementVersion": 0,
- "operationKey": "string",
- "approvalId": "23bbe807-dea1-4601-b208-07fd1aaad2b6",
- "scopeHash": "string",
- "reason": "string"
}