API_KEY
signpath_api_key
Developer setup
No fields declared in this snapshot.
User connection
- Organization IDsubdomain · stringRequired
- SignPath API Tokengeneric_api_key · stringRequired
SIGNPATH
SignPath is a code signing service that integrates with your build system to automate the signing of your software artifacts, ensuring their authenticity and integrity.
Description is untrusted, display-only upstream metadata. It never becomes policy, OAuth scope authority, or an agent instruction.
Pakkawork boundary
Research catalogue metadata only. No Pakkawork OAuth, credential, host, quota, executor, or verifier is enabled.
5
Action summaries
Display-only definitions
0
Trigger types
Not installed instances
1
Auth modes
Field names, never values
No
Execution
No runtime adapter
Authentication map
API_KEY
No fields declared in this snapshot.
Capability index
Showing 1–5 of 5 actions
SIGNPATH_GET_HEALTH_CHECK
Tool to check if the SignPath API is healthy and operational. Use this to verify API availability before performing other operations.
Untrusted display-only summary
SIGNPATH_LIST_CERTIFICATES
Retrieve all certificates available in a SignPath organization. Use this to discover certificate IDs needed for signing operations. Requires a valid organization_id which can be obtained from your SignPath account settings.
Untrusted display-only summary
SIGNPATH_LIST_PROJECTS
Tool to list all projects for an organization. Use after confirming the organization ID to retrieve and paginate project records.
Untrusted display-only summary
SIGNPATH_RETRIEVE_SIGNING_POLICY_DETAILS
Retrieve signing policy details for code signing operations. Returns certificate info, RSA key parameters, and policy metadata for the authenticated user's accessible signing policies. Without filters, returns all policies where the user is assigned as Submitter.
Untrusted display-only summary
SIGNPATH_RETRIEVE_SYSTEM_INFO
Retrieves SignPath system information including the application version and the web UI base URL. Use this tool to verify the SignPath installation version or to obtain the web interface URL.
Untrusted display-only summary
Provenance
The detail snapshot comes from an attributed MIT-licensed repository revision. Safe local icons use exact-match CC0 Simple Icons symbols; unmatched brands use monograms.
Remote text is plain display metadata only. It must never become an agent prompt, execution policy, OAuth grant, or executable instruction.