> ## Documentation Index
> Fetch the complete documentation index at: https://docs.occtoo.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Discover application access options



## OpenAPI

````yaml /api-reference/openapi/configuration.json get /v1/applications/access-catalog
openapi: 3.1.1
info:
  title: Configuration API
  description: >-
    Manage applications, sources, source properties, managed tags and managed
    tag values. Lists use forward-only keyset pagination with after and limit
    (default 50, maximum 200). Successful responses return resource data
    directly, with ForwardPage (items, after, totalCount) for lists. Errors use
    ProblemDetails. Tenant identity comes from authentication. Application
    updates replace settings and require the latest etag. Secrets are returned
    only on creation. Property changes and source deletion may complete
    asynchronously.
  version: 1.0.0
servers:
  - url: https://api.occtoo.com
security: []
tags:
  - name: Sources
  - name: Applications
  - name: Managed tags
  - name: Managed tag values
paths:
  /v1/applications/access-catalog:
    get:
      tags:
        - Applications
      summary: Discover application access options
      operationId: GetApplicationAccessCatalog
      responses:
        '200':
          description: OK
          content:
            application/json:
              schema:
                type: array
                items:
                  $ref: '#/components/schemas/AccessNodeResponse'
        '400':
          description: Bad Request
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/HttpValidationProblemDetails'
        '401':
          description: Unauthorized
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/ProblemDetails'
        '403':
          description: Forbidden
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/ProblemDetails'
        '404':
          description: Not Found
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/ProblemDetails'
        '409':
          description: Conflict
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/ProblemDetails'
        '429':
          description: Too Many Requests
          headers:
            Retry-After:
              description: Optional number of seconds to wait before retrying.
              schema:
                minimum: 1
                type: integer
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/ProblemDetails'
        '500':
          description: Internal Server Error
          content:
            application/problem+json:
              schema:
                $ref: '#/components/schemas/ProblemDetails'
      security:
        - kindeOAuth: []
        - bearerAuth: []
        - apiKey: []
components:
  schemas:
    AccessNodeResponse:
      required:
        - key
        - grantType
        - label
        - description
        - resourceId
        - audience
        - children
      type: object
      properties:
        key:
          type: string
        grantType:
          $ref: '#/components/schemas/ApplicationGrantType'
        label:
          type: string
        description:
          type:
            - 'null'
            - string
        resourceId:
          type:
            - 'null'
            - string
        audience:
          type:
            - 'null'
            - string
        children:
          type: array
          items:
            $ref: '#/components/schemas/AccessNodeResponse'
    HttpValidationProblemDetails:
      type: object
      properties:
        type:
          type:
            - 'null'
            - string
        title:
          type:
            - 'null'
            - string
        status:
          pattern: ^-?(?:0|[1-9]\d*)$
          type:
            - 'null'
            - integer
            - string
          format: int32
        detail:
          type:
            - 'null'
            - string
        instance:
          type:
            - 'null'
            - string
        errors:
          type: object
          additionalProperties:
            type: array
            items:
              type: string
    ProblemDetails:
      type: object
      properties:
        type:
          type:
            - 'null'
            - string
        title:
          type:
            - 'null'
            - string
        status:
          pattern: ^-?(?:0|[1-9]\d*)$
          type:
            - 'null'
            - integer
            - string
          format: int32
        detail:
          type:
            - 'null'
            - string
        instance:
          type:
            - 'null'
            - string
    ApplicationGrantType:
      enum:
        - Group
        - Scope
        - Resource
        - Api
  securitySchemes:
    kindeOAuth:
      type: oauth2
      description: >-
        Sign in with the existing Occtoo Studio identity and selected
        organization.
      flows:
        authorizationCode:
          authorizationUrl: >-
            https://auth.occtoo.com/oauth2/auth?audience=https%3A%2F%2Fapi-weu.occtoo.com
          tokenUrl: https://auth.occtoo.com/oauth2/token
          scopes:
            openid: Authenticate the user with OpenID Connect.
            profile: Read the user's basic profile.
            email: Read the user's email address.
            offline: Refresh the access token without another interactive sign-in.
          x-usePkce: SHA-256
          x-scalar-redirect-uri: https://api.occtoo.com/docs/
    bearerAuth:
      type: http
      description: >-
        Tenant-scoped Occtoo access token, including Kinde machine-to-machine
        application tokens.
      scheme: bearer
      bearerFormat: JWT
    apiKey:
      type: apiKey
      description: Occtoo organization API key.
      name: x-api-key
      in: header

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.