List available integrations
List every AFPS integration PLACED in the current space — homed there, offered there, or shipped with the deployment — enriched with active + block_user_connections flags for that same space. Placement, not activation: an offer the space has not taken up and an integration switched off are both listed, with active: false. An integration homed in another space of the organization and offered to nobody is NOT listed, whatever the caller's organization role: the home is the only authority there is, and a personal space is read by nobody else (RBAC spec §3.6). Supports offset pagination (limit/offset) and a fields projection selector — request ?fields=id,source to drop the heavy per-row manifest and fetch only what you need.
/api/integrationsCookie session from Better Auth. Requires X-Org-Id header for org-scoped routes.
In: cookie
Query Parameters
1001 <= value <= 100Number of items to skip before the first returned item.
00 <= valueComma-separated allowlist of fields to return per item (id is always included). Allowed: id, manifest, orgId, source, active, block_user_connections. An unknown field is a 400.
Header Parameters
Organization ID. Required for cookie auth. Not needed for API key auth (org resolved from key).
uuidSpace ID. Required for space-scoped routes (agents, runs, schedules, and space-scoped module routes). Not needed for API key auth (space resolved from key).
curl -X GET "https://your-instance/api/integrations"{
"object": "list",
"data": [
{
"id": "string",
"manifest": {},
"orgId": "string",
"source": "local",
"active": true,
"block_user_connections": true
}
],
"total": 0,
"hasMore": true
}{
"type": "https://docs.appstrate.dev/errors/unauthorized",
"title": "Unauthorized",
"status": 401,
"detail": "Invalid or missing session",
"code": "unauthorized",
"request_id": "req_abc123"
}{
"type": "https://docs.appstrate.dev/errors/forbidden",
"title": "Forbidden",
"status": 403,
"detail": "Insufficient permissions",
"code": "forbidden",
"request_id": "req_abc123"
}