openapi: 3.2.0 info: title: Integrations Credential Vault Operations API description: '**Note:** The Webhook Operations APIs are not available for ThousandEyes for Government instance. Manage connectors and operations. ' version: 7.0.100 x-provenance: method: harvested authored_by: Cisco ThousandEyes harvested_by: API Evangelist harvested_on: '2026-08-19' first_party: true provider_published: true source_host: pubhub.devnetcloud.com note: 27 OpenAPI 3.0 documents (26 per-area plus a unified 326-operation document) served anonymously from Cisco's DevNet CDN. api.thousandeyes.com itself 401s every path, so the contract is public while the API host is gated. x-evidence: - type: source url: https://pubhub.devnetcloud.com/media/000-v7-apis/docs/reference/ - type: source url: https://developer.cisco.com/docs/thousandeyes/ servers: - url: https://api.thousandeyes.com/v7 description: ThousandEyes API v7 security: - BearerAuth: [] tags: - name: Credential Vault Operations description: Credential Vault operations allow you to configure vault secrets. paths: /operations/credential-vault/{id}: get: tags: - Credential Vault Operations summary: Get Credential Vault operation description: Retrieve a single Credential Vault operation by its ID. operationId: getCredentialVaultOperation parameters: - $ref: '#/components/parameters/operationIdPath' name: id in: path required: true schema: type: string - $ref: '#/components/parameters/AccountGroupId' responses: '200': description: Credential Vault operation details. content: application/hal+json: schema: $ref: '#/components/schemas/CredentialVaultOperation' '400': $ref: '#/components/responses/400' '401': $ref: '#/components/responses/401' '403': $ref: '#/components/responses/403' '404': $ref: '#/components/responses/404' '500': $ref: '#/components/responses/500' put: tags: - Credential Vault Operations summary: Update Credential Vault operation description: Update a single existing Credential Vault operation. operationId: updateCredentialVaultOperation parameters: - $ref: '#/components/parameters/operationIdPath' name: id in: path required: true schema: type: string - $ref: '#/components/parameters/AccountGroupId' requestBody: content: application/json: schema: $ref: '#/components/schemas/CredentialVaultOperation' required: true responses: '200': description: The updated Credential Vault operation. content: application/hal+json: schema: $ref: '#/components/schemas/CredentialVaultOperation' '400': $ref: '#/components/responses/400' '401': $ref: '#/components/responses/401' '403': $ref: '#/components/responses/403' '404': $ref: '#/components/responses/404' '500': $ref: '#/components/responses/500' delete: tags: - Credential Vault Operations summary: Delete Credential Vault operation description: 'Delete a single Credential Vault operation by its ID. Note: This operation may disable affected objects (such as tests).' operationId: deleteCredentialVaultOperation parameters: - $ref: '#/components/parameters/operationIdPath' name: id in: path required: true schema: type: string - $ref: '#/components/parameters/AccountGroupId' - name: confirmDisabledObjects in: query description: Confirmation to disable affected objects (for example, tests) for credential-vault operations. required: true schema: type: boolean default: false example: true responses: '204': description: No Content. '400': $ref: '#/components/responses/400' '401': $ref: '#/components/responses/401' '403': $ref: '#/components/responses/403' '404': $ref: '#/components/responses/404' '500': $ref: '#/components/responses/500' /operations/credential-vault: get: tags: - Credential Vault Operations summary: List Credential Vault operations description: Returns a list of Credential Vault operations in the specified account group. If no account group is specified, the user's default account group is used. operationId: getCredentialVaultOperations parameters: - $ref: '#/components/parameters/AccountGroupId' responses: '200': description: A list of Credential Vault operations. content: application/hal+json: schema: $ref: '#/components/schemas/CredentialVaultOperations' '400': $ref: '#/components/responses/400' '401': $ref: '#/components/responses/401' '403': $ref: '#/components/responses/403' '404': $ref: '#/components/responses/404' '500': $ref: '#/components/responses/500' post: tags: - Credential Vault Operations summary: Create Credential Vault operation description: Create a new Credential Vault operation. operationId: createCredentialVaultOperation parameters: - $ref: '#/components/parameters/AccountGroupId' requestBody: content: application/json: schema: $ref: '#/components/schemas/CredentialVaultOperation' required: true responses: '201': description: The created Credential Vault operation. content: application/hal+json: schema: $ref: '#/components/schemas/CredentialVaultOperation' '400': $ref: '#/components/responses/400' '401': $ref: '#/components/responses/401' '403': $ref: '#/components/responses/403' '404': $ref: '#/components/responses/404' '500': $ref: '#/components/responses/500' components: responses: '500': description: Internal server error content: application/problem+json: schema: $ref: '#/components/schemas/Error' example: type: about:blank title: Internal server error status: 500 detail: Optional detail about the internal error message. instance: /v7 '400': description: Bad Request content: application/problem+json: schema: $ref: '#/components/schemas/ValidationError' example: type: about:blank title: Request validation failed. There are invalid or missing fields status: 400 detail: Your request object contains invalid fields. instance: /v7 errors: - code: AM-5432 field: firstName message: firstName cannot have fancy characters - code: DASH-5622 field: password message: Password cannot be blank '403': description: Insufficient permissions to query endpoint content: application/problem+json: schema: $ref: '#/components/schemas/Error' '404': description: Not found content: application/problem+json: schema: $ref: '#/components/schemas/Error' example: type: about:blank title: URI Resource Not Found status: 404 detail: Details explaining if the 404 error is related to an invalid URI or a wrong ID instance: /v7 '401': description: Unauthorized content: application/problem+json: schema: $ref: '#/components/schemas/UnauthorizedError' schemas: OperationType: type: string enum: - webhook ValidationError: type: object allOf: - $ref: '#/components/schemas/Error' - type: object properties: errors: type: - array - 'null' description: (Optional) When multiple errors occur, the details for each error are listed. items: $ref: '#/components/schemas/ValidationErrorItem' ValidationErrorItem: type: object properties: code: type: string description: (Optional) A unique error type/code that can be referenced in the documentation for further details. field: type: string description: Identifies the field that triggered this particular error. message: type: string description: A short, human-readable summary of the error. OperationStatus: type: string description: 'The connectivity status of the operation to its target endpoint. Indicates whether the operation can successfully connect and communicate with the target URL. Values: ''pending'' (initial state, not yet tested), ''connected'' (successfully connected), ''failing'' (connection or execution issues), ''unverified'' (not yet verified/tested).' enum: - pending - connected - failing - unverified UnauthorizedError: type: object properties: error: type: string example: invalid_token error_description: type: string example: Invalid access token CredentialVaultOperations: type: object properties: items: type: array items: $ref: '#/components/schemas/CredentialVaultOperation' _links: $ref: '#/components/schemas/SelfLinks' Link: type: object description: A hyperlink from the containing resource to a URI. required: - href properties: href: type: string description: Its value is either a URI [RFC3986] or a URI template [RFC6570]. example: https://api.thousandeyes.com/v7/link/to/resource/id templated: type: boolean description: Should be true when the link object's "href" property is a URI template. type: type: string description: Used as a hint to indicate the media type expected when dereferencing the target resource. deprecation: type: string description: Its presence indicates that the link is to be deprecated at a future date. Its value is a URL that should provide further information about the deprecation. name: type: string description: Its value may be used as a secondary key for selecting link objects that share the same relation type. profile: type: string description: A URI that hints about the profile of the target resource. title: type: string description: Intended for labelling the link with a human-readable identifier hreflang: type: string description: Indicates the language of the target resource SelfLinks: type: object description: A links object containing the self link. readOnly: true properties: self: $ref: '#/components/schemas/Link' CredentialVaultOperation: required: - name - secrets type: object properties: id: type: string readOnly: true example: cb1b8033-ea2d-4e9b-a920-fe87850693cf name: type: string example: My operation secrets: type: array items: $ref: '#/components/schemas/CredentialVaultSecret' type: $ref: '#/components/schemas/OperationType' status: $ref: '#/components/schemas/OperationStatus' _links: $ref: '#/components/schemas/SelfLinks' CredentialVaultSecret: required: - name - secretKey type: object properties: id: type: string example: cb1b8033-ea2d-4e9b-a920-fe87850693cf name: type: string example: secret_name secretKey: type: string example: secret/key Error: type: object properties: type: type: string description: A URI reference that identifies the problem type. When this member is not present, its value is assumed to be "about:blank". title: type: string description: A short, human-readable summary of the problem type. status: type: integer description: The HTTP status code generated by the origin server for this occurrence of the problem. detail: type: string description: A human-readable explanation specific to this occurrence of the problem. instance: type: string description: A URI reference that identifies the specific occurrence of the problem. parameters: AccountGroupId: name: aid in: query description: A unique identifier associated with your account group. You can retrieve your `AccountGroupId` from the `/account-groups` endpoint. Note that you must be assigned to the target account group. Specifying this parameter without being assigned to the target account group will result in an error response. required: false schema: type: string example: '1234' operationIdPath: name: id in: path description: The operation ID. required: true schema: type: string example: cb1b8033-ea2d-4e9b-a920-fe87850693cf securitySchemes: BearerAuth: type: http scheme: bearer description: Bearer authentication token