API reference
The Kiste HTTP API at kiste.run, its authentication and every endpoint.
Everything the CLI and the console do goes through one HTTP API at
https://kiste.run. It is described by an OpenAPI 3.1 document at
kiste.run/openapi.json, and the endpoint pages
here are generated from that document, so they list exactly what is deployed.
A first request
Create an API key, then:
(The answer has more fields; InstanceResponse lists them all.)
Create a Kiste:
Authentication
Every /v1 request needs a bearer token in the Authorization header:
- an API key (
ksta_…), created in the console under API keys or withkiste auth token create, for scripts, CI and agents; - the token of a CLI sign-in, which
kiste loginstores for the CLI.
Browser sessions of the console use a cookie instead and work only on console.kiste.run itself. API keys explains what an API key can and can't do.
Endpoints
Kisten
Create, read, stop, resume, restart, fork, rename, update, delete.
Commands
Run commands with exact output; durable records; cancel and interrupt.
Snapshots
Named snapshots and checkpoints; restore.
SSH and terminal
The SSH tunnel, the host key, the browser terminal.
Desktop
Desktop links and the viewer's routes.
Kiste Stream
Publish and revoke ports.
Images and environments
Images, components, environments, image versions.
Events, webhooks and alerts
The event stream, webhook endpoints, alerts.
Account and access
Account, limits, sign-ins, API keys, device keys, export, deletion.
Sign-in and platform
OAuth for the CLI, platform status, the specification, installers.
Conventions covers lists, long operations, request IDs, errors and limits that apply to every endpoint.