Skip to content

Report where the connector deployed each certificate (connector-issued keys only)

POST
/connectors/report
curl --request POST \
--url https://api.krakenkey.io/connectors/report \
--header 'Authorization: Bearer <token>' \
--header 'Content-Type: application/json' \
--data '{ "version": "0.2.0", "os": "linux", "arch": "amd64", "certificates": [ { "certificateId": 42, "targets": [ { "label": "nginx-main", "state": "pending", "serial": {}, "error": {}, "updatedAt": "2026-10-10T14:00:00.000Z" } ] } ] }'
Media typeapplication/json
object
version
required
string
<= 64 characters
Example
0.2.0
os
required
string
<= 32 characters
Example
linux
arch
required
string
<= 32 characters
Example
amd64
certificates
required
Array<object>
<= 500 items
object
certificateId
required
number
Example
42
targets
required

Every target the certificate is deployed to. Targets left out are removed.

Array<object>
<= 50 items
object
label
required
string
/^[A-Za-z0-9._-]{1,64}$/
Example
nginx-main
state
required
string
Allowed values: pending staged activated verified activated_unverifiable failed rolled_back
serial

Hex serial of the installed certificate

object
error

Short error code or message

object
updatedAt
required

When the target last changed: RFC 3339 in UTC (Z), seconds or fractional seconds, at most 5 minutes in the future

string
Example
2026-10-10T14:00:00.000Z

Stored; certificates outside the connector restrictions are skipped and listed in rejectedCertificateIds

Not a connector-issued key