List a connection's accounts
const url = 'https://api.aletheia-ops.com/api/v1/aws/connections/example/accounts';const options = {method: 'GET', headers: {Authorization: 'Bearer <token>'}};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request GET \ --url https://api.aletheia-ops.com/api/v1/aws/connections/example/accounts \ --header 'Authorization: Bearer <token>'Authorizations
Section titled “Authorizations”Parameters
Section titled “Parameters”Path Parameters
Section titled “Path Parameters”Responses
Section titled “Responses”OK
Accounts list response
object
Public shape of an onboarded account
object
Structured probe summary on an account
object
One validation probe outcome
object
Role template an account actually has deployed, read back from the role’s own critias:template-version tag. An absent version means unknown — a role deployed before the template stamped its version, or one Aletheia currently cannot read — which is never the same as being out of date
object
Examplegenerated
{ "items": [ { "id": "example", "account_id": "example", "name": "example", "email": "example", "ou_path": "example", "role_arn": "example", "included": true, "status": "example", "regions": [ "example" ], "effective_regions": [ "example" ], "validation": { "checks": [ { "check": "example", "ok": true, "message": "example" } ], "missing_permissions": [ "example" ], "error": "example" }, "last_validated_at": "2026-04-15T12:00:00Z", "template": { "version": "example", "behind": true } } ]}No valid credential was presented, or it has expired.
object
Stable, machine-readable identifier. Branch on this.
Human-readable explanation. Safe to display; do not parse.
Examples
{ "code": "unauthorized", "message": "authentication required"}{ "code": "invalid_credentials", "message": "invalid email or password"}{ "code": "invalid_token", "message": "invalid or expired token"}{ "code": "token_reuse", "message": "session revoked"}{ "code": "webhook_unauthorized", "message": "webhook verification failed"}Authenticated, but not permitted to perform this action.
object
Stable, machine-readable identifier. Branch on this.
Human-readable explanation. Safe to display; do not parse.
Examples
{ "code": "forbidden", "message": "you do not have permission to perform this action"}{ "code": "csrf_failed", "message": "missing or invalid CSRF token"}{ "code": "account_deactivated", "message": "your account is deactivated; contact your administrator"}{ "code": "ai_disabled", "message": "the AI assistant is disabled for this organization"}The resource does not exist, or belongs to another organization. The two are deliberately indistinguishable.
object
Stable, machine-readable identifier. Branch on this.
Human-readable explanation. Safe to display; do not parse.
Examples
{ "code": "not_found", "message": "resource not found"}An unexpected failure. Diagnostic detail is logged server-side and
deliberately not returned. Quote the X-Request-Id response header when
reporting one.
object
Stable, machine-readable identifier. Branch on this.
Human-readable explanation. Safe to display; do not parse.
Examples
{ "code": "internal_error", "message": "internal server error"}