Skip to main content
GET
Get this layer's protection manifest

Authorizations

Authorization
string
header
required

Supabase JWT token in Authorization: Bearer header

Headers

Accept
enum<string>

Response format. YAML is canonical; JSON is returned only on explicit application/json. The ?include=sources envelope is JSON-only.

Available options:
text/yaml,
application/yaml,
application/json

Path Parameters

scope_id
enum<string>
required

Always default — the platform scope is a singleton; any other value returns 400 with care-framed guidance pointing at default.

Available options:
default

Query Parameters

include_composition
boolean
default:false

Include the _composition metadata block on the response body.

include
enum<string>

When sources, returns the scope-resolution envelope for this scope (the contributing layers + the composed result); the envelope shape is scope-specific (see ADR-053). The envelope is JSON-only.

Available options:
sources

Response

Protection manifest at this scope.

Base (non-?include=sources) JSON body of GET /v1/{alignment,protection}/platform/{scope_id}. The platform scope is a template/defaults wrapper, not a full composed card: handleGet in src/composition/platform-handlers.ts returns { defaults, available } where defaults is the authored platform-defaults JSON (a partial card) or null when none is set. YAML is the default representation and is not response-validated; this schema governs the JSON variant returned on Accept: application/json.

available
boolean
required

True when platform-scope defaults are set (defaults !== null).

defaults
object | null

The authored platform-scope defaults JSON (a partial card), or null when no platform defaults are set.