POST
/
api
/
v1
/
additional-privilege
/
identity
/
temporary

Authorizations

Authorization
string
headerrequired

An access token in Infisical

Body

application/json
identityId
string
required

The ID of the identity to create.

Minimum length: 1
projectSlug
string
required

The slug of the project of the identity in.

Minimum length: 1
temporaryMode
enum<string>
required

Type of temporary access given. Types: relative.

Available options:
relative
temporaryRange
string
required

TTL for the temporary time. Eg: 1m, 1h, 1d.

temporaryAccessStartTime
string
required

ISO time for which temporary access should begin.

slug
string

The slug of the privilege to create.

Required string length: 1 - 60
permissions
object[]

@deprecated - use privilegePermission The permission object for the privilege.

  • Read secrets
{ "permissions": [{"action": "read", "subject": "secrets"]}
  • Read and Write secrets
{ "permissions": [{"action": "read", "subject": "secrets"], {"action": "write", "subject": "secrets"]}
  • Read secrets scoped to an environment and secret path
- { "permissions": [{"action": "read", "subject": "secrets", "conditions": { "environment": "dev", "secretPath": { "$glob": "/" } }}] }
privilegePermission
object

The permission object for the privilege.

Response

200 - application/json
privilege
object
required

Was this page helpful?