> ## Documentation Index > Fetch the complete documentation index at: https://docs.britive.com/llms.txt > Use this file to discover all available pages before exploring further. # Get policy details for a given policy id ## OpenAPI ````json GET /api/mcp-manager/mcp-servers/{serverId}/policies/{policyId} { "openapi": "3.0.1", "info": { "title": "Britive Services API Documentation", "version": "v1", "description": "API documentation for Users, Tags, Identity providers, Applications, Reporting, Audit logs, Tenants, SSO, Profiles, Password policies, MFA, Access Builder Settings, etc." }, "servers": [ { "url": "https://{tenantURL}", "description": "The primary server", "variables": { "tenantURL": { "default": "test.britive-app.com", "description": "The host of the server" } } } ], "security": [ { "bearerAuth": [] } ], "tags": [ { "name": "Access Request Tag Membership", "description": "Manage tag memberships granted via access requests" }, { "name": "API Tokens", "description": "Manage API Tokens" }, { "name": "Application Environments", "description": "Manage Application Environments" }, { "name": "Application Environments - Accounts", "description": "Manage Application Environments Accounts" }, { "name": "Application Profiles", "description": "Manage Application Profiles" }, { "name": "Application Profiles - Advanced Settings", "description": "Manage Application Profiles Advanced Settings" }, { "name": "Application Profiles - Permissions", "description": "Manage Application Profiles Permissions" }, { "name": "Application Profiles - Permission Constraint Manager", "description": "Manage Profile Permission Constraints for the permissions that support to define constraints." }, { "name": "Application Profiles - Policies", "description": "Manage Application Profiles Policies" }, { "name": "Application Profiles - Scopes", "description": "Manage Application Profiles Scopes" }, { "name": "Application Profiles - Session Attributes", "description": "Manage Application Profiles Session Attributes" }, { "name": "Application Profiles - Sessions", "description": "Manage Application Profiles Sessions" }, { "name": "Application Profiles - Users and Tags", "description": "Manage Application Profiles" }, { "name": "Applications", "description": "Manage Applications" }, { "name": "Applications - Access Builder Settings", "description": "Manage access builder settings for an application" }, { "name": "Applications - Advanced Settings", "description": "Manage Applications Advanced Settings" }, { "name": "Applications - Approvers Groups", "description": "Manage approvers groups for association approvers" }, { "name": "Applications - Association Approvers", "description": "Manage association approvers for an application" }, { "name": "Applications - Managed Permissions", "description": "Manage Britive Permissions" }, { "name": "Applications - Permissions", "description": "Manage Application Permissions" }, { "name": "Applications - Root Environment Groups", "description": "Manage Application Root Environment Groups" }, { "name": "Applications - Scans", "description": "Manage Application Scans" }, { "name": "Audit Log Webhooks", "description": "Manage Audit Log Webhooks" }, { "name": "Audit Logs(v1 Deprecated)", "description": "Manage Audit Logs (Deprecated - use Audit Logs v2 instead)" }, { "name": "Audit Logs v2", "description": "Manage Audit Logs v2" }, { "name": "CSPM Integration", "description": "Manage Cloud Security Posture Management (CSPM) tool integrations and their tokens" }, { "name": "CSPM Integration - Findings", "description": "Discover and fetch CSPM finding data, cross-referenced against Britive applications and profiles" }, { "name": "Custom App Template Uploader", "description": "Uploads custom app template." }, { "name": "Custom App Manager", "description": "Creates an app using custom template and other operations for managing the template." }, { "name": "Global Landing Page", "description": "Manage global landing page" }, { "name": "Identity Providers", "description": "Manage identity providers and settings" }, { "name": "IP Restrictions", "description": "Manage firewall rules/settings" }, { "name": "ITSM Connection Metadata", "description": "Manage ITSM Connection Metadata" }, { "name": "ITSM Connections", "description": "Manage ITSM Connections" }, { "name": "ITSM Integration", "description": "Manage ITSM Connections" }, { "name": "IM Connection Metadata", "description": "Manage IM Connection Metadata" }, { "name": "IM Connections", "description": "Manage IM Connections" }, { "name": "IM Integration", "description": "Manage IM Connections" }, { "name": "MCP Access Manager", "description": "Access MCP servers and check out credentials for their tools" }, { "name": "MCP Audit", "description": "Submit MCP gateway audit events" }, { "name": "MCP Server Tools", "description": "Manage the tools exposed by an MCP Server" }, { "name": "MCP Servers", "description": "Manage MCP Servers" }, { "name": "MCP Servers - Policies", "description": "Manage MCP Server Policies" }, { "name": "Multi Factor Authentication", "description": "Manage MFA authentication settings" }, { "name": "My Access", "description": "Manage My Access" }, { "name": "My Devices", "description": "Manage My Devices" }, { "name": "My Resources", "description": "Manage My Resources" }, { "name": "My Resources - Integration", "description": "Manage My Resource Integration" }, { "name": "My Resources - Profiles", "description": "Manage My Resource Profiles" }, { "name": "Notifications", "description": "Manage notifications" }, { "name": "Profile Requests - Managed Permissions", "description": "Manage Profile Requests Britive Permissions" }, { "name": "Reports", "description": "Manage Reports" }, { "name": "Resource Manager", "description": "Manage Resources" }, { "name": "Resource Manager - Broker Pool Management", "description": "Manage remote broker pools, their tokens, labels, and brokers" }, { "name": "Resource Manager - Labels", "description": "Manage Resource Labels" }, { "name": "Resource Manager - Permissions", "description": "Manage Resource Permissions" }, { "name": "Resource Manager - Policies", "description": "Manage Resource Policies" }, { "name": "Resource Manager - Response Templates", "description": "Manage Resource Response Templates" }, { "name": "Resource Manager - Types", "description": "Manage Resource Types" }, { "name": "Resource Profiles", "description": "Manage Resource Profiles" }, { "name": "Resource Profiles - Advanced Settings", "description": "Manage Resource Profiles Advanced Settings" }, { "name": "Resource Profiles - Associations", "description": "Manage Resource Profiles Associations" }, { "name": "Resource Profiles - Permissions", "description": "Manage Resource Profiles Permissions" }, { "name": "Resource Profiles - Policies", "description": "Manage Resource Profiles Policies" }, { "name": "SAML Configuration", "description": "Manage SAML Configuration" }, { "name": "Step Up Authentication", "description": "Manage service identity association to identity provider" }, { "name": "System Announcements", "description": "Manage the system announcements" }, { "name": "Tag Access Request Settings", "description": "Manage access request settings for a user tag" }, { "name": "Tag Access Requests", "description": "Browse tags available for access request" }, { "name": "Task Scheduler", "description": "Manage Tasks" }, { "name": "User Identity Attributes", "description": "Manage User Identity Attributes" }, { "name": "User Resources", "description": "Manage User Built Resources" }, { "name": "User Tags", "description": "Manage User Tags" }, { "name": "Users, Service Identities and AI Identities", "description": "Manage Users, Service Identities and AI Identities" }, { "name": "Workload Identity Providers", "description": "Manage workload identity providers" }, { "name": "Workload SCIM Identity Providers", "description": "Manage service identity association to SCIM provisioning for identity provider" }, { "name": "Workload Service Identity Providers", "description": "Manage service identity association to identity provider" }, { "name": "User Tag Owner", "description": "Tag Owners manage the tag memberships of their owned tags" }, { "name": "Shared Signals - Catalog", "description": "Manage shared signals catalog data" }, { "name": "Shared Signals - Issuers", "description": "Manage shared signals issuers" }, { "name": "Shared Signals - Receivers", "description": "Manage shared signals receivers" }, { "name": "Shared Signals - Results", "description": "Query shared signals processing results" }, { "name": "ThemesManager", "description": "Manage tenant custom theme configurations (public read, admin write)" }, { "name": "BrandingManager", "description": "Manage tenant branding assets — logos, favicon, right-panel image, brand text (saved/applied lifecycle)" } ], "paths": { "/api/mcp-manager/mcp-servers/{serverId}/policies/{policyId}": { "get": { "tags": [ "MCP Servers - Policies" ], "summary": "Get policy details for a given policy id", "operationId": "GetMcpServerPolicyDetails", "parameters": [ { "name": "serverId", "in": "path", "description": "Id of the mcp server to get policy", "required": "true", "schema": { "type": "string" } }, { "name": "policyId", "in": "path", "description": "Id of the policy to retrieve details", "required": "true", "schema": { "type": "string" } }, { "name": "compactResponse", "in": "query", "description": "Policy details in compact json format", "required": "false", "schema": { "type": "boolean", "example": "true" } } ], "responses": { "200": { "description": "mcp server policy retrieved successfully", "content": { "application/json": { "schema": { "$ref": "#/components/schemas/McpServerPolicyDto" } } } }, "404": { "description": "Not Found" } } } } }, "components": { "schemas": { "McpServerPolicyDto": { "type": "object", "properties": { "id": { "type": "string" }, "name": { "type": "string" }, "isActive": { "type": "boolean" }, "isDraft": { "type": "boolean" }, "isReadOnly": { "type": "boolean" }, "condition": { "type": "object" }, "resource": { "type": "string" }, "consumer": { "type": "string" }, "members": { "type": "array", "items": { "$ref": "#/components/schemas/McpPolicyMemberDto" } }, "order": { "type": "integer", "minimum": "0", "description": "Precedence of this policy among the policies on the same MCP server. 0 is the highest rank, ascending from there (0 beats 1 beats 2...); an absent order means \"no order\" and ranks below every ordered policy. Orders are retained regardless of the server's policyOrderingEnabled flag but only take effect at checkout when it is true.\nWhen more than one policy grants the same tool, checkout uses the credential providers of the highest-ranked (lowest order) policy. An order must be unique among the server's policies -- updating a policy to an order another policy on that server already holds is rejected with 409. On create the order is assigned automatically (when ordering is enabled), so create does not reject on order.", "example": "0" }, "toolCredAssociations": { "$ref": "#/components/schemas/McpToolCredAssociations" } } }, "McpPolicyMemberDto": { "type": "object", "properties": { "tags": { "type": "array", "items": { "$ref": "#/components/schemas/McpIDNamePair" } }, "tokens": { "type": "array", "items": { "$ref": "#/components/schemas/McpIDNamePair" } }, "users": { "type": "array", "items": { "$ref": "#/components/schemas/McpIDNamePair" } }, "serviceIdentities": { "type": "array", "items": { "$ref": "#/components/schemas/McpIDNamePair" } } } }, "McpToolCredAssociations": { "type": "object", "description": "The tools on this MCP server the policy grants, and the credential providers handed out when one of them is checked out.", "properties": { "tools": { "type": "array", "uniqueItems": "true", "items": { "type": "string" }, "description": "Names of the MCP server tools this policy grants.\nAn empty array grants every tool on the server, including tools added to it later. Explicit names grant only those tools.\nOmitting the field is a no-op, not an empty array. On create the policy grants no tools; on update it keeps the tools it already has.\nReads are faithful to the grant: a policy saved with an empty array is returned with an empty array, and a policy that grants no tools is returned with no tools list.\nThe policy never stores a synthetic \"*\" -- the wildcard is materialized only in the policy-evaluation cache.", "example": [ "list_repositories", "create_issue" ] }, "credProviders": { "type": "array", "uniqueItems": "true", "items": { "$ref": "#/components/schemas/McpIDNamePair" }, "description": "Credential providers used at checkout for the granted tools. Only id is read on write; name is populated on read.\nOmitting the field is a no-op: on create nothing is stored, and on update the policy keeps the providers it already has. Send an empty array to clear them." } } }, "McpIDNamePair": { "type": "object", "properties": { "id": { "type": "string" }, "name": { "type": "string" } } } }, "securitySchemes": { "bearerAuth": { "type": "http", "scheme": "bearer" } } } } ````