How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Bucket Apps API

The Apps API from Bucket — 9 operation(s) for apps.

Bucket Apps API is one of 2 APIs that Bucket publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Application. The published artifact set on APIs.io includes an OpenAPI specification.

This API exposes 12 operations across 9 paths, and defines 35 schemas. It is described by OpenAPI 3.2.0, at version 3.0.1.

Requests are made against a single base URL, https://app.reflag.com/api.

12 operations 9 paths 35 schemas 8 GET3 PATCH1 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
3.0.1
Base URL
https://app.reflag.com/api
Authentication
HTTP Bearer
Resource Areas
1

Authentication & Security 1

Bucket Apps API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (APIKey). By default, every request must be authenticated.

  • APIKey — API key authentication, for service access

Paths & Operations 12

Across 9 paths, the API surfaces 12 operations — 8 GET, 3 PATCH, 1 POST. Each is listed below with its method, path, parameters, and response codes.

Apps 12
GET
/apps/{appId}
Get details of an application
getApp 1 param → 200400401403404
GET
/apps
List of applications
listApps 1 param → 200400401403404
GET
/apps/{appId}/environments
List environments for application
listEnvironments 3 params → 200400401403404
GET
/apps/{appId}/environments/{envId}
Get environment details
getEnvironment 2 params → 200400401403404
GET
/apps/{appId}/flags
List flags for application
listFlags 1 param → 200400401403404
POST
/apps/{appId}/flags
Create a flag
createFlag 1 param body → 200400401403404
PATCH
/apps/{appId}/flags/{flagId}
Update a flag
updateFlag 2 params body → 200400401403404
GET
/apps/{appId}/flags/{flagKey}/targeting/{envId}
Get flag targeting for an environment
getFlagTargeting 3 params → 200400401403404
GET
/apps/{appId}/envs/{envId}/companies/{companyId}/flags
Get flags for a company
getCompanyFlags 3 params → 200400401403404
PATCH
/apps/{appId}/envs/{envId}/companies/{companyId}/flags
Update flag targeting for a company
updateCompanyFlags 3 params body → 200400401403404
GET
/apps/{appId}/envs/{envId}/users/{userId}/flags
Get flags for a user
getUserFlags 3 params → 200400401403404
PATCH
/apps/{appId}/envs/{envId}/users/{userId}/flags
Update flag targeting for a user
updateUserFlags 3 params body → 200400401403404

Schemas 35

The contract defines 35 schemas that model the data the API accepts and returns. The most detailed are flagHeader (17 properties), entityFlag (13 properties), app (8 properties), flagHeaderCollection (6 properties). Each schema is shown below with its type and property counts.

userId
string
User ID within your application
updateEntityFlagsBody
object
Request body for updating flags for an entity
3 properties 1 required
environmentHeaderSortByColumn
string
The column to sort by
environment
object
Environment details
6 properties 6 required
flagHeader
object
Basic flag information
17 properties 8 required
stageId
string
Stage identifier
orgId
string
Organization identifier
flagId
string
Flag ID
flagHeaderCollection
object
Collection response containing flags
6 properties 6 required
app
object
App information with related collections
8 properties 8 required
segmentType
string
Segment type
entityFlag
object
Flag information with enabled status for an entity
13 properties 13 required
orgHeader
object
Organization's basic information
2 properties 2 required
sortOrder
string
Sort order applied to the sorting column
flagKey
string
Unique flag key
segmentId
string
Segment identifier
entityFlagsResponse
object
Response containing flags for an entity
4 properties 4 required
envId
string
Environment identifier
flagValue
string
The value of the flag served to the audience.
flagVersion
integer
Flag targeting version
flagValueTargeting
object
Flag targeting value and its audience
2 properties 2 required
companyId
string
Company ID within your application
reflagUserHeader
object
Reflag user's basic information
4 properties 3 required
appHeaderCollection
object
Collection of Basic app information
1 property 1 required
segmentHeader
object
Segment's basic information
3 properties 3 required
flagTargeting
object
Flag targeting information and its audience
4 properties 4 required
appHeader
object
Basic app information
6 properties 6 required
appId
string
App identifier
entityFlagUpdate
object
Update for a single flag's explicit targeting override
2 properties 2 required
environmentHeaderCollection
object
Collection of Basic environment information
3 properties 3 required
flagKeyFormat
string
The enforced key format when creating flags
environmentHeader
object
Basic environment information
5 properties 5 required
stageHeader
object
Stage's basic information
4 properties 4 required
ErrorResponse
object
The error response, including individual issues, if applicable
2 properties 1 required
reflagUserId
string
Reflag user identifier

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

bucket-apps-api-openapi.yml Raw ↑

Other APIs Bucket publishes across the network.

Reflag Runtime API
Where this information came from

This is an independent, third-party profile of Bucket Apps API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.