How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Venafi HashiCorp PKI APIs API

The Public Key Infrastructure (PKI) interface allows Trust Protection Foundation to act as an Intermediate Certificate Authority for certificate vaults. This interface also sends the CSR to the CA to sign.The signed certificate includes the root, intermediate, and end user certificate chain. Trust Protection Foundation provisions the chain to the vault and stores information about the chain. The vault stores the intermediate and end user certificates.The PKI interface is only available through the Web SDK.However, the HashiCorpVault PKI application object and Role object appear in the Policy folder. For other details, see HashiCorp Vault PKI—overview.This interface is valid only if you purchased a certificate product.

Venafi HashiCorp PKI APIs API is one of 58 APIs that Venafi publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include HashiCorp PKI APIs. The published artifact set on APIs.io includes an OpenAPI specification and API documentation.

This API exposes 11 operations across 5 paths, and defines 8 schemas. It is described by OpenAPI 3.2.0, at version 26.1.1.

Requests are made against 3 base URLs: /, https://REPLACEdnsnameME/, https://{dnsname}/.

11 operations 5 paths 8 schemas 2 DELETE3 GET4 POST2 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
26.1.1
Base URL
https://api.venafi.cloud
Authentication
HTTP Bearer
Resource Areas
1

Authentication & Security 1

Venafi HashiCorp PKI APIs API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (AccessToken). By default, every request must be authenticated.

Paths & Operations 11

Across 5 paths, the API surfaces 11 operations — 2 DELETE, 3 GET, 4 POST, 2 PUT. Each is listed below with its method, path, parameters, and response codes.

HashiCorp PKI APIs 11

The Public Key Infrastructure (PKI) interface allows Trust Protection Foundation to act as an Intermediate Certificate Authority for certificate vaults.

POST
/vedsdk/pki/hashicorp/role/
Create a role
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiRoles_Create body → 200403400401
DELETE
/vedsdk/pki/hashicorp/role/{guid}
Remove policy enforcement settings
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiRoles_Delete 1 param → 200403400401
GET
/vedsdk/pki/hashicorp/role/{guid}
Retrieve policy information
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiRoles_GetByGuid 1 param → 200403400401
PUT
/vedsdk/pki/hashicorp/role/{guid}
Update Trust Protection Foundation info
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiRoles_Update 1 param → 200403400401
POST
/vedsdk/pki/hashicorp/ca/{guid}
Create or update roles
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiConfiguration_EnforceRoles 1 param → 200403400401
GET
/vedsdk/pki/hashicorp/ca/{guid}
Retrieve details
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiConfiguration_GetByGuid 1 param → 200403400401
PUT
/vedsdk/pki/hashicorp/ca/{guid}
Update configuration
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiConfiguration_Update 1 param → 200403400401
DELETE
/vedsdk/pki/hashicorp/ca/{guid}
Remove PKI configuration
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiConfiguration_Delete 1 param → 200403400401
POST
/vedsdk/pki/hashicorp/ca/{guid}/renew
Initiate renewal or first time enrollment
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiConfiguration_EnrollAndProvision 1 param → 200403400401
POST
/vedsdk/pki/hashicorp/ca/
Define configuration
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiConfiguration_Create body → 200403400401
GET
/vedsdk/pki/hashicorp/ca/
List all HashiCorp Vault PKI secrets
Venafi_Drivers_Applications_HashiCorp_HashiCorpPkiConfiguration_Get → 200403400401

Schemas 8

The contract defines 8 schemas that model the data the API accepts and returns. The most detailed are Drivers_Applications_HashiCorp_REST_Role (14 properties), Drivers_Applications_HashiCorp_REST_PkiResponse (10 properties), Drivers_Applications_HashiCorp_REST_CreatePkiRequest (9 properties), Drivers_Applications_HashiCorp_REST_CreatePkiResponse (4 properties). Each schema is shown below with its type and property counts.

Web_SDK_Authentication_OAuthError
object
REST OAuth Error Response
2 properties
Drivers_Applications_HashiCorp_REST_Pkis
object
List of all PKI objects.
2 properties
Drivers_Applications_HashiCorp_REST_CreateRoleResponse
object
Response for role creation request.
2 properties
Drivers_Applications_HashiCorp_REST_CreatePkiResponse
object
Response for PKI create request.
4 properties
Drivers_Applications_HashiCorp_REST_PkiResponse
object
PKI details.
10 properties
Drivers_Applications_HashiCorp_REST_CreatePkiRequest
object
Create HashiCorp PKI request.
9 properties
Drivers_Applications_HashiCorp_REST_Role
object
HashiCorp Role policy object.
14 properties
Drivers_Applications_HashiCorp_REST_CreateRoleRequest_
object
2 properties 2 required

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

venafi-hashicorp-pki-apis-api-openapi.yml Raw ↑

Other APIs Venafi publishes across the network.

Venafi Access Management APIs API
Venafi AlgorithmSelector APIs API
Venafi Application API
Venafi Authentication Server APIs API
Venafi Certificate Approvals API
Venafi Certificate Auto-renewal Monitoring API
Venafi Certificate Discovery API
Venafi Certificate Expiration Reports API
Venafi Certificate Import API
Venafi Certificate Installations API
Venafi Certificate Inventory Monitoring API
Venafi Certificate Management APIs API
Where this information came from

This is an independent, third-party profile of Venafi HashiCorp PKI APIs API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.