Get a change
const url = 'https://api.aletheia-ops.com/api/v1/changes/example';const options = {method: 'GET', headers: {Authorization: 'Bearer <token>'}};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request GET \ --url https://api.aletheia-ops.com/api/v1/changes/example \ --header 'Authorization: Bearer <token>'Authorizations
Section titled “Authorizations”Parameters
Section titled “Parameters”Path Parameters
Section titled “Path Parameters”Responses
Section titled “Responses”OK
Full change (drawer): summary fields plus payload and resources
object
Normalized actor identity on a timeline change
object
object
Links a change to an inventory resource (and, when known, the resulting config revision — the replay substrate)
object
Examplegenerated
{ "id": "example", "source_system": "example", "kind": "example", "occurred_at": "2026-04-15T12:00:00Z", "recorded_at": "2026-04-15T12:00:00Z", "actor": { "type": "example", "id": "example", "display": "example", "arn": "example" }, "actor_user_id": "example", "via": "example", "aws_account_id": "example", "region": "example", "event_name": "example", "summary": "example", "payload": {}, "resources": [ { "resource_id": "example", "resource_config_revision_id": "example", "match_kind": "example" } ]}No valid credential was presented, or it has expired.
object
Stable, machine-readable identifier. Branch on this.
Human-readable explanation. Safe to display; do not parse.
Examples
{ "code": "unauthorized", "message": "authentication required"}{ "code": "invalid_credentials", "message": "invalid email or password"}{ "code": "invalid_token", "message": "invalid or expired token"}{ "code": "token_reuse", "message": "session revoked"}{ "code": "webhook_unauthorized", "message": "webhook verification failed"}Authenticated, but not permitted to perform this action.
object
Stable, machine-readable identifier. Branch on this.
Human-readable explanation. Safe to display; do not parse.
Examples
{ "code": "forbidden", "message": "you do not have permission to perform this action"}{ "code": "csrf_failed", "message": "missing or invalid CSRF token"}{ "code": "account_deactivated", "message": "your account is deactivated; contact your administrator"}{ "code": "ai_disabled", "message": "the AI assistant is disabled for this organization"}The resource does not exist, or belongs to another organization. The two are deliberately indistinguishable.
object
Stable, machine-readable identifier. Branch on this.
Human-readable explanation. Safe to display; do not parse.
Examples
{ "code": "not_found", "message": "resource not found"}An unexpected failure. Diagnostic detail is logged server-side and
deliberately not returned. Quote the X-Request-Id response header when
reporting one.
object
Stable, machine-readable identifier. Branch on this.
Human-readable explanation. Safe to display; do not parse.
Examples
{ "code": "internal_error", "message": "internal server error"}