object — Additional properties rejected
| Field | Required at this level | Type | Description and constraints |
|---|---|---|---|
credentialId |
Yes | string |
Min length: 3; Max length: 160 |
label |
Yes | string |
— |
kind |
Yes | string |
Allowed: API_KEY, OAUTH_CLIENT |
scopes |
Yes | Array of string |
— |
keyPrefix |
Yes | string |
Pattern: ^klo_[A-Za-z0-9_-]+$; Min length: 12; Max length: 32 |
secretHash |
Yes | Hash | — |
createdAt |
Yes | string |
Format: date-time |
expiresAt |
No | string |
Format: date-time |
rotatedAt |
No | string |
Format: date-time |
supersededSecretHash |
No | Hash | — |
Nested required fields apply when their parent object or matching union branch is present. Named types link to their complete schema.
Exact definition: #/components/schemas/DeveloperCredential in the OpenAPI contract.