Vendors and discovery
Connect a vendor for discovery
PUT
/api/w/:wid/discovery/:vendorOwners and admins. :vendor is openai, anthropic or openrouter. The credential is checked with the vendor first, then sealed; it is never shown again. A first sync runs at once unless syncNow is false.
| Field | Description |
|---|---|
secret | an OpenAI admin key, an Anthropic admin key (sk-ant-admin...), or an OpenRouter management key |
policy | for keys made outside Immiscible: record (default), alert (email the owners), or revoke (alert, and file a revocation proposal) |
syncHours | how often the scheduled sync runs, 1 to 168 (default 6) |
#Authentication
Session cookie
A signed-in person: the console's session cookie. Every state-changing request also carries the header x-immiscible-csrf: 1, and the member's role decides what it may do. Bearer tokens are ignored on these routes, so no machine credential can reach them.
#Path parameters
widstringrequired
Workspace id
vendorstringrequired
The vendor