How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Infisical PKI Certificates API

The PKI Certificates API from Infisical — 26 operation(s) for pki certificates.

Infisical PKI Certificates API is one of 73 APIs that Infisical publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include PKI Certificates. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and authentication docs.

This API exposes 30 operations across 26 paths. It is described by OpenAPI 3.2.0, at version 0.0.1.

Requests are made against 3 base URLs: https://us.infisical.com, https://eu.infisical.com, http://localhost:8080.

30 operations 26 paths 0 schemas 2 DELETE10 GET3 PATCH14 POST1 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
0.0.1
Base URL
https://app.infisical.com
Authentication
HTTP Bearer
Resource Areas
1

Authentication & Security 1

Infisical PKI Certificates API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (JWT) (bearerAuth).

  • bearerAuth — An access token in Infisical

Paths & Operations 30

Across 26 paths, the API surfaces 30 operations — 2 DELETE, 10 GET, 3 PATCH, 14 POST, 1 PUT. Each is listed below with its method, path, parameters, and response codes.

PKI Certificates 30
POST
/api/v1/projects/{projectId}/certificates/search
Search and filter certificates within a project.
searchProjectCertificates 1 param body → 200400401403404422500
POST
/api/v1/cert-manager/certificates
createCertificate body → 200400401403404422500
GET
/api/v1/cert-manager/certificates/certificate-requests/{requestId}
getCertificateRequest 1 param → 200400401403404422500
POST
/api/v1/cert-manager/certificates/certificate-requests/{requestId}/trigger-validation
Manually ask the issuing CA to re-check validation for a pending certificate request
triggerCertificateRequestValidation 1 param → 200400401403404422500
POST
/api/v1/cert-manager/certificates/certificate-requests/search
Search and filter certificate requests.
searchCertificateRequests body → 200400401403404422500
POST
/api/v1/cert-manager/certificates/certificate-requests/{requestId}/cancel
Cancel a pending certificate request.
cancelCertificateRequest 1 param → 200400401403404422500
POST
/api/v1/cert-manager/certificates/{id}/renew
renewCertificate 1 param body → 200400401403404422500
PATCH
/api/v1/cert-manager/certificates/{id}/config
updateCertificateRenewalConfig 1 param body → 200400401403404422500
GET
/api/v1/cert-manager/certificates/{id}
Get certificate
getCertificate 1 param → 200400401403404422500
PATCH
/api/v1/cert-manager/certificates/{id}
Update certificate
updateCertificate 1 param body → 200400401403404422500
DELETE
/api/v1/cert-manager/certificates/{id}
Delete certificate
deleteCertificate 1 param → 200400401403404422500
GET
/api/v1/cert-manager/certificates/{id}/private-key
Get certificate private key
getCertificatePrivateKey 1 param → 200400401403404422500
GET
/api/v1/cert-manager/certificates/{id}/bundle
Get certificate bundle including the certificate, chain, and private key.
getCertificateBundle 1 param → 200400401403404422500
POST
/api/v1/cert-manager/certificates/import-certificate
Import certificate
importCertificate body → 200400401403404422500
POST
/api/v1/cert-manager/certificates/{id}/revoke
Revoke
revokeCertificate 1 param body → 200400401403404422500
POST
/api/v1/cert-manager/certificates/{id}/application
Assign a certificate to an Application. Only certificates that aren't already attached to an Application can be assigned; once attached the binding cannot be moved.
assignCertificateToApplication 1 param body → 200400401403404422500
GET
/api/v1/cert-manager/certificates/{id}/certificate
Get certificate body of certificate
getCertificateBody 1 param → 200400401403404422500
GET
/api/v1/cert-manager/certificate-cleanup
Get certificate cleanup configuration for a project
getCertificateCleanupConfig → 200400401403404422500
PUT
/api/v1/cert-manager/certificate-cleanup
Create or update certificate cleanup configuration for a project
updateCertificateCleanupConfig body → 200400401403404422500
GET
/api/v1/pki/certificates/{serialNumber}
Get certificate
1 param → 200400401403404422500
DELETE
/api/v1/pki/certificates/{serialNumber}
Delete certificate
1 param → 200400401403404422500
GET
/api/v1/pki/certificates/{serialNumber}/private-key
Get certificate private key
1 param → 200400401403404422500
GET
/api/v1/pki/certificates/{serialNumber}/bundle
Get certificate bundle including the certificate, chain, and private key.
1 param → 200400401403404422500
POST
/api/v1/pki/certificates/issue-certificate
Issue certificate
body → 200400401403404422500
POST
/api/v1/pki/certificates/import-certificate
Import certificate
body → 200400401403404422500
POST
/api/v1/pki/certificates/sign-certificate
Sign certificate
body → 200400401403404422500
POST
/api/v1/pki/certificates/{serialNumber}/revoke
Revoke
1 param body → 200400401403404422500
GET
/api/v1/pki/certificates/{serialNumber}/certificate
Get certificate body of certificate
1 param → 200400401403404422500
POST
/api/v3/pki/certificates/{certificateId}/renew
1 param body → 200400401403404422500
PATCH
/api/v3/pki/certificates/{certificateId}/config
1 param body → 200400401403404422500

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

infisical-pki-certificates-api-openapi.yml Raw ↑

Other APIs Infisical publishes across the network.

Infisical Admin API
Infisical Alibaba Cloud Auth API
Infisical App Connections API
Infisical Audit Logs API
Infisical AWS Auth API
Infisical Azure Auth API
Infisical Cert Manager API
Infisical Dynamic Secrets API
Infisical Environments API
Infisical Event Subscriptions API
Infisical Folders API
Infisical GCP Auth API
Where this information came from

This is an independent, third-party profile of Infisical PKI Certificates API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.