> ## Documentation Index
> Fetch the complete documentation index at: https://docs.byzantine.fi/llms.txt
> Use this file to discover all available pages before exploring further.

# List integrator credentials

> Returns every credential owned by the authenticated integrator, oldest first: public key,
access scope, active status, label, and creation time. Private keys are returned only in the
creation response and are not stored by the API, so they never appear in this list.



## OpenAPI

````yaml /api-reference/openapi-integrator.json get /v1/integrator/credentials
openapi: 3.0.3
info:
  title: Byzantine Integrator API
  description: Byzantine REST API for integrators.
  license:
    name: ''
  version: 0.2.0
servers:
  - url: https://sandbox.api.byzantine.fi
    description: Sandbox
security: []
tags:
  - name: API health
    description: Check API status.
  - name: Customer management
    description: Endpoints to create, update, and retrieve customer information.
  - name: Account management
    description: Endpoints to manage accounts, bank accounts, invitations, and user roles.
  - name: Products
    description: Endpoints to get data about products and vaults.
  - name: Transactions
    description: Endpoints to create and manage transactions.
  - name: OTP authentication
    description: Endpoints to initialize and manage user authentication with OTP.
  - name: Events
    description: Endpoints to list lifecycle events.
  - name: Webhooks
    description: Integrator-managed outbound webhook subscriptions and delivery history.
  - name: Integrator key management
    description: >-
      Endpoints to inspect the current integrator credential scope, create,
      update and delete integrator keys.
paths:
  /v1/integrator/credentials:
    get:
      tags:
        - Integrator key management
      summary: List integrator credentials
      description: >-
        Returns every credential owned by the authenticated integrator, oldest
        first: public key,

        access scope, active status, label, and creation time. Private keys are
        returned only in the

        creation response and are not stored by the API, so they never appear in
        this list.
      operationId: list_credentials
      parameters:
        - name: X-Pubkey
          in: header
          description: >-
            Integrator's ECDSA public key (P-256 curve, compressed SEC1 format).
            Example:
            0x038fedef7c12f93bbf342ad8943b7a825a3b41f61c9dc118b2c718efebabbf62fd
          required: true
          schema:
            type: string
        - name: X-Timestamp
          in: header
          description: >-
            Unix timestamp in seconds (UTC). Must be within tolerance window (1
            minute) to prevent replay attacks. Example: 1760375826
          required: true
          schema:
            type: string
        - name: X-Signature
          in: header
          description: >-
            ECDSA signature (DER-encoded, hex with 0x prefix). Signs the
            message: {timestamp}{METHOD}{path_and_query}{json_body}. Example:
            0x3045022100...
          required: true
          schema:
            type: string
      responses:
        '200':
          description: Credentials owned by the authenticated integrator
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ListCredentialsResponse'
        '400':
          description: Bad request - Missing or invalid auth headers
        '401':
          description: Unauthorized - Invalid credential or signature
        '500':
          description: Internal server error
      security:
        - integrator_auth: []
components:
  schemas:
    ListCredentialsResponse:
      type: object
      required:
        - credentials
      properties:
        credentials:
          type: array
          items:
            $ref: '#/components/schemas/CredentialSummaryResponse'
          description: Credentials owned by the authenticated integrator, oldest first.
    CredentialSummaryResponse:
      type: object
      required:
        - pubkey
        - integratorId
        - accessScope
        - active
        - createdAt
      properties:
        pubkey:
          type: string
          description: Public key identifying the credential.
        integratorId:
          $ref: '#/components/schemas/Uuid'
        accessScope:
          $ref: '#/components/schemas/IntegratorAccessScope'
        active:
          type: boolean
          description: Whether the credential is active.
        label:
          type: string
          description: Label of the credential.
          nullable: true
        createdAt:
          type: string
          format: date-time
          description: Creation time of the credential.
    Uuid:
      type: string
      format: uuid
      description: A UUID string
      example: 550e8400-e29b-41d4-a716-446655440000
    IntegratorAccessScope:
      type: string
      enum:
        - read_write
        - read_only
      example: read_write
  securitySchemes:
    integrator_auth:
      type: apiKey
      in: header
      name: X-Pubkey, X-Timestamp, X-Signature

````