How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Onecli Apps API

Manage app connections (OAuth and direct credentials), BYOC configuration, permission catalogs, and blocklists.

Onecli Apps API is one of 24 APIs that Onecli publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Application. The published artifact set on APIs.io includes an OpenAPI specification, an API reference, and API documentation.

This API exposes 16 operations across 12 paths, and defines 8 schemas. It is described by OpenAPI 3.1.0, at version 1.0.

Requests are made against 2 base URLs: https://api.onecli.sh/v1, http://localhost:10254/v1.

16 operations 12 paths 8 schemas 2 DELETE9 GET2 PATCH3 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.1.0
API Version
1.0
Base URL
https://api.onecli.sh/v1
Authentication
HTTP Bearer
Resource Areas
1

Authentication & Security 1

Onecli Apps API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (bearerAuth). By default, every request must be authenticated.

  • bearerAuth — API key obtained from the dashboard or GET /user/api-key

Paths & Operations 16

Across 12 paths, the API surfaces 16 operations — 2 DELETE, 9 GET, 2 PATCH, 3 POST. Each is listed below with its method, path, parameters, and response codes.

Apps 16

Manage app connections (OAuth and direct credentials), BYOC configuration, permission catalogs, and blocklists.

GET
/apps
List apps
listApps → 200
GET
/apps/{provider}
Get app details
getApp 1 param → 200404
GET
/apps/{provider}/authorize
Start OAuth flow
authorizeApp 3 params → 302400
POST
/apps/{provider}/connect
Connect app with credentials
connectApp 1 param body → 200400
GET
/apps/{provider}/config
Get app configuration
getAppConfig 1 param → 200
POST
/apps/{provider}/config
Set app configuration
upsertAppConfig 1 param body → 201400
DELETE
/apps/{provider}/config
Delete app configuration
deleteAppConfig 1 param → 204
PATCH
/apps/{provider}/config/toggle
Toggle app configuration
toggleAppConfig 1 param body → 200404
GET
/apps/configured
List configured providers
listConfiguredApps → 200
GET
/apps/env-defaults
List providers with platform default credentials
listEnvDefaultApps → 200
GET
/apps/permission-definitions
List app permission definitions
listPermissionDefinitions → 200
GET
/apps/{provider}/permission-definition
Get app permission definition
getPermissionDefinition 1 param → 200404
GET
/apps/{provider}/blocklist
Get blocklist state
getBlocklist 1 param → 200404
POST
/apps/{provider}/blocklist
Activate or add a blocklist entry
addBlocklistEntry 1 param body → 201400
PATCH
/apps/{provider}/blocklist/{ruleId}
Toggle a blocklist rule
toggleBlocklistRule 2 params body → 200
DELETE
/apps/{provider}/blocklist/{ruleId}
Remove a blocklist rule
removeBlocklistRule 2 params → 204

Schemas 8

The contract defines 8 schemas that model the data the API accepts and returns. The most detailed are App (8 properties), BlocklistHostState (7 properties), AppToolGroup (3 properties), AppTool (3 properties). Each schema is shown below with its type and property counts.

BlocklistHostState
object
State of one blocklist entry — a predefined host or a custom rule.
7 properties
AppTool
object
One operation in an app's permission catalog, by identity. The endpoint mapping behind a tool is internal; permission changes reference the tool ID and the ser…
3 properties
App
object
8 properties
PermissionDefinition
object
An app's static tool catalog — the tool IDs that the permissions endpoints operate on.
2 properties
Error
Error responses take one of two shapes depending on the failing layer: route-level validation returns the flat shape ({ "error": "..." }), while authentication…
ErrorFlat
object
Flat error shape used by route-level validation.
1 property 1 required
AppToolGroup
object
3 properties
ErrorEnvelope
object
Envelope error shape used for authentication failures and service errors.
1 property

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

onecli-apps-api-openapi.yml Raw ↑

Other APIs Onecli publishes across the network.

Onecli Agent Setup API
Onecli Agents API
Onecli Approvals API
Onecli Connections API
Onecli Migration API
Onecli Organization App Config API
Onecli Organization Approvals API
Onecli Organization Connections API
Onecli Organization Partner API
Onecli Organization Rules API
Onecli Organization Secrets API
Onecli Organization Settings API
Where this information came from

This is an independent, third-party profile of Onecli Apps API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.