Need help with your APIs? I offer API discovery, governance & evangelism services. Explore services →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

HashiCorp Vault Secrets Data API

Read, write, patch, and delete secret data versions in the KV v2 engine.

HashiCorp Vault Secrets Data API is one of 9 APIs that HashiCorp Vault publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

This API exposes 5 JSON Schema definitions.

Tagged areas include Secrets Data. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, a JSON-LD context, and 5 JSON Schemas.

This API exposes 6 operations across 4 paths, and defines 6 schemas. It is described by OpenAPI 3.0.3, at version 2.0.

Requests are made against a single base URL, https://vault.example.com/v1.

6 operations 4 paths 6 schemas 1 DELETE1 GET3 POST1 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.0.3
API Version
2.0
Base URL
https://vault.example.com/v1
Authentication
API Key
License
Terms of Service
Resource Areas
1

Authentication & Security 1

HashiCorp Vault Secrets Data API declares 1 security scheme for authenticating requests. An API key is passed in the header as X-Vault-Token (vaultToken). By default, every request must be authenticated.

  • vaultToken — Vault token for authenticating API requests. Tokens can be created via login endpoints or the token auth method. The token must have appropriate policy permiss…

Paths & Operations 6

Across 4 paths, the API surfaces 6 operations — 1 DELETE, 1 GET, 3 POST, 1 PUT. Each is listed below with its method, path, parameters, and response codes.

Secrets Data 6

Read, write, patch, and delete secret data versions in the KV v2 engine.

GET
/secret/data/{path}
HashiCorp Vault Read Secret
readSecret 2 params → 200403404
POST
/secret/data/{path}
HashiCorp Vault Write Secret
writeSecret 1 param body → 200400403
DELETE
/secret/data/{path}
HashiCorp Vault Delete Latest Secret Version
deleteLatestSecretVersion 1 param → 204403404
POST
/secret/delete/{path}
HashiCorp Vault Delete Secret Versions
deleteSecretVersions 1 param body → 204403
POST
/secret/undelete/{path}
HashiCorp Vault Undelete Secret Versions
undeleteSecretVersions 1 param body → 204403
PUT
/secret/destroy/{path}
HashiCorp Vault Destroy Secret Versions
destroySecretVersions 1 param body → 204403

Schemas 6

The contract defines 6 schemas that model the data the API accepts and returns. The most detailed are SecretVersionMetadata (4 properties), SecretDataRequest (2 properties), SecretDataResponse (1 property), VaultError (1 property). Each schema is shown below with its type and property counts.

SecretWriteResponse
object
1 property
VersionsRequest
object
1 property 1 required
VaultError
object
1 property
SecretDataRequest
object
2 properties 1 required
SecretVersionMetadata
object
4 properties
SecretDataResponse
object
1 property

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

vault-secrets-data-api-openapi.yml Raw ↑

Other APIs HashiCorp Vault publishes across the network.

Vault HTTP API
HashiCorp Vault Auth Methods API
HashiCorp Vault Health API
HashiCorp Vault Leases API
HashiCorp Vault Policies API
HashiCorp Vault Secrets Config API
HashiCorp Vault Secrets Engines API
HashiCorp Vault Secrets Metadata API