The open and composable observability and data visualization platform. Visualize metrics, logs, and traces from multiple sources like Prometheus, Loki, Elasticsearch, InfluxDB, Postgres and many more.
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
 
 
 
 
 
 
grafana/pkg/api
Ieva c354c7bfff
RBAC: Update fixed annotation roles (#78756)
2 years ago
..
apierrors Plugins: Move store and plugin dto to pluginsintegration (#74655) 2 years ago
avatar Chore: Fix goimports grouping in pkg/api (#62419) 2 years ago
datasource
dtos Authz: Remove use of SignedInUser copy for permission evaluation (#78448) 2 years ago
frontendlogging Chore: use any rather than interface{} (#74066) 2 years ago
pluginproxy FeatureToggles: Add context and and an explicit global check (#78081) 2 years ago
response Errors: Make errors the same in dev as prod (#77366) 2 years ago
routing Chore: Move ReqContext to contexthandler service (#62102) 2 years ago
static
README.md Swagger: Show k8s APIs (#78091) 2 years ago
accesscontrol.go RBAC: Update fixed annotation roles (#78756) 2 years ago
admin.go Auth: Add anonymous users view and stats (#78685) 2 years ago
admin_encryption.go Config: Add configuration option to define custom user-facing general error message for certain error types (#70023) 2 years ago
admin_provisioning.go Chore: Move ReqContext to contexthandler service (#62102) 2 years ago
admin_provisioning_test.go RBAC: Rewrite provisioning rbac tests (#61752) 2 years ago
admin_test.go Auth: Add anonymous users view and stats (#78685) 2 years ago
admin_users.go Revert "Revert "RBAC: remove dashboard ACL logic from dash store, service #78130" (#78203) 2 years ago
admin_users_test.go Login: refactor auth info package (#78459) 2 years ago
alerting.go Authz: Remove use of SignedInUser copy for permission evaluation (#78448) 2 years ago
annotations.go Annotations: Remove dashboard permission checks for annotations (#78352) 2 years ago
annotations_test.go Annotations: Remove dashboard permission checks for annotations (#78352) 2 years ago
api.go Perf: Disable core kind registry (#78568) 2 years ago
apikey.go Chore: Port user services to identity.Requester (#73851) 2 years ago
basic_auth.go
basic_auth_test.go
common_test.go Auth: Split signout_redirect_url into per provider settings (#75269) 2 years ago
dashboard.go Perf: Disable core kind registry (#78568) 2 years ago
dashboard_permission.go Authz: Remove use of SignedInUser copy for permission evaluation (#78448) 2 years ago
dashboard_permission_test.go authz: Clean up acl endpoints and dashboard guardian (#73746) 2 years ago
dashboard_snapshot.go Identity: Unfurl UserID and Email in pkg/api to user identity.Requester (#76112) 2 years ago
dashboard_snapshot_test.go Authz: fix snapshot tests legacy guardian (#73823) 2 years ago
dashboard_test.go Perf: Disable core kind registry (#78568) 2 years ago
dataproxy.go Chore: use any rather than interface{} (#74066) 2 years ago
datasources.go FeatureToggles: Add context and and an explicit global check (#78081) 2 years ago
datasources_test.go Team LBAC: Add permission check for Update datasource (#77709) 2 years ago
fakes.go Plugins: Add context to StaticRouteResolver and ErrorResolver interfaces (#73121) 2 years ago
featuremgmt.go Feature Management: Define HideFromAdminPage and AllowSelfServe configs (#77580) 2 years ago
featuremgmt_test.go Feature Management: Define HideFromAdminPage and AllowSelfServe configs (#77580) 2 years ago
folder.go RBAC: correctly fetch nested folder metadata (#78655) 2 years ago
folder_bench_test.go Authz: Remove use of SignedInUser copy for permission evaluation (#78448) 2 years ago
folder_permission.go Authz: Remove use of SignedInUser copy for permission evaluation (#78448) 2 years ago
folder_permission_test.go Chore: Deprecate ID from Folder (#78281) 2 years ago
folder_test.go Chore: Deprecate ID from Folder (#78281) 2 years ago
frontend_logging.go Plugins: Add context to StaticRouteResolver and ErrorResolver interfaces (#73121) 2 years ago
frontend_logging_test.go Chore: use any rather than interface{} (#74066) 2 years ago
frontend_metrics.go Chore: Move ReqContext to contexthandler service (#62102) 2 years ago
frontendsettings.go FeatureToggles: Add context and and an explicit global check (#78081) 2 years ago
frontendsettings_test.go FeatureToggles: Add context and and an explicit global check (#78081) 2 years ago
grafana_com_proxy.go API: don't re-add /api suffix to grafana.com API URL (#62280) 2 years ago
health.go Chore: Remove Store interface and use db.DB instead (#60160) 2 years ago
health_test.go HealthCheck: show enterprise commit (#75242) 2 years ago
http_server.go Auth: Add anonymous users view and stats (#78685) 2 years ago
http_server_test.go Chore: Fix goimports grouping in pkg/api (#62419) 2 years ago
index.go Chore: Remove `navAdminSubsections` toggle (#78179) 2 years ago
login.go Auth: Split signout_redirect_url into per provider settings (#75269) 2 years ago
login_oauth.go Auth: Remove unused Authenticator service (#73143) 2 years ago
login_oauth_test.go Auth: Remove auth broker flag and clean up login handlers (#73109) 2 years ago
login_test.go Auth: Split signout_redirect_url into per provider settings (#75269) 2 years ago
metrics.go FeatureToggles: Add context and and an explicit global check (#78081) 2 years ago
metrics_test.go Errors: Make errors the same in dev as prod (#77366) 2 years ago
org.go Chore: Port user services to identity.Requester (#73851) 2 years ago
org_invite.go Chore: use any rather than interface{} (#74066) 2 years ago
org_invite_test.go Chore: Fix goimports grouping in pkg/api (#62419) 2 years ago
org_test.go Access: Fetch fresh permissions for target GlobalOrgID in AuthorizeInOrgMiddleware (#76569) 2 years ago
org_users.go Chore: remove `gcomOnlyExternalOrgRoleSync` feature toggle (#78001) 2 years ago
org_users_test.go Authz: Remove use of SignedInUser copy for permission evaluation (#78448) 2 years ago
password.go Chore: Remove result fields from login (#65136) 2 years ago
playlist.go FeatureToggles: Add context and and an explicit global check (#78081) 2 years ago
plugin_dashboards.go Auth: Unfurl OrgID in pkg/api to allow using identity.Requester interface (#76108) 2 years ago
plugin_dashboards_test.go Chore: Fix goimports grouping in pkg/api (#62419) 2 years ago
plugin_metrics.go Chore: Refactor backend plugin errors (#74928) 2 years ago
plugin_metrics_test.go Chore: Refactor backend plugin errors (#74928) 2 years ago
plugin_proxy.go Auth: Unfurl OrgID in pkg/api to allow using identity.Requester interface (#76108) 2 years ago
plugin_proxy_test.go
plugin_resource.go Auth: Unfurl OrgID in pkg/api to allow using identity.Requester interface (#76108) 2 years ago
plugin_resource_test.go FeatureFlags: Cleanup usage of cfg.IsFeatureToggleEnabled (#78014) 2 years ago
plugins.go Chore: use errutil for pluginRepo errors (#78647) 2 years ago
plugins_test.go Plugins: Check installer's permissions include plugins' permissions (#78211) 2 years ago
preferences.go Teams: Move team API to own service (#76347) 2 years ago
preferences_test.go Identity: Unfurl UserID and Email in pkg/api to user identity.Requester (#76112) 2 years ago
quota.go Auth: Unfurl OrgID in pkg/api to allow using identity.Requester interface (#76108) 2 years ago
quota_test.go MESA: Allow using synced permissions (#71377) 2 years ago
render.go Identity: Unfurl UserID and Email in pkg/api to user identity.Requester (#76112) 2 years ago
search.go Authz: Remove use of SignedInUser copy for permission evaluation (#78448) 2 years ago
short_url.go Auth: Unfurl OrgID in pkg/api to allow using identity.Requester interface (#76108) 2 years ago
short_url_test.go Chore: Fix goimports grouping in pkg/api (#62419) 2 years ago
signup.go Identity: Unfurl UserID and Email in pkg/api to user identity.Requester (#76112) 2 years ago
swagger.go Swagger: Show k8s APIs (#78091) 2 years ago
swagger_responses.go PublicDashboards: Add swagger documentation (#75318) 2 years ago
swagger_tags.json Browse Dashboards: Update docs to remove reference to `General` folder (#74528) 2 years ago
user.go User: remove empty email / username check from update in service (#77347) 2 years ago
user_test.go Login: refactor auth info package (#78459) 2 years ago
user_token.go Auth: Add more context to logs around token rotation, revocation (#78600) 2 years ago
user_token_test.go AuthToken: client token rotation fix (#65709) 2 years ago
utils.go authz: Clean up acl endpoints and dashboard guardian (#73746) 2 years ago

README.md

OpenAPI specifications

Since version 8.4, HTTP API details are specified using OpenAPI v2. Starting from version 9.1, there is also an OpenAPI v3 specification (generated by the v2 one using this script).

OpenAPI annotations

The OpenAPI v2 specification is generated automatically from the annotated Go code using go-swagger which scans the source code for annotation rules. Refer to this getting started guide for getting familiar with the toolkit.

Developers modifying the HTTP API endpoints need to make sure to add the necessary annotations so that their changes are reflected into the generated specifications.

Example of endpoint annotation

The following route defines a PATCH endpoint under the /serviceaccounts/{serviceAccountId} path with tag service_accounts (used for grouping together several routes) and operation ID updateServiceAccount (used for uniquely identifying routes and associate parameters and response with them).


// swagger:route PATCH /serviceaccounts/{serviceAccountId} service_accounts updateServiceAccount
//
// # Update service account
//
// Required permissions (See note in the [introduction](https://grafana.com/docs/grafana/latest/developers/http_api/serviceaccount/#service-account-api) for an explanation):
// action: `serviceaccounts:write` scope: `serviceaccounts:id:1` (single service account)
//
// Responses:
// 200: updateServiceAccountResponse
// 400: badRequestError
// 401: unauthorisedError
// 403: forbiddenError
// 404: notFoundError
// 500: internalServerError

The go-swagger can discover such annotations by scanning any code imported by pkg/server but by convention we place the endpoint annotations above the endpoint definition.

Example of endpoint parameters

The following struct defines the route parameters for the updateServiceAccount endpoint. The route expects:

  • a path parameter denoting the service account identifier and
  • a body parameter with the new values for the specific service account

// swagger:parameters updateServiceAccount
type UpdateServiceAccountParams struct {
	// in:path
	ServiceAccountId int64 `json:"serviceAccountId"`
	// in:body
	Body serviceaccounts.UpdateServiceAccountForm
}

Example of endpoint response

The following struct defines the response for the updateServiceAccount endpoint in case of a successful 200 response.


// swagger:response updateServiceAccountResponse
type UpdateServiceAccountResponse struct {
	// in:body
	Body struct {
		Message        string                                    `json:"message"`
		ID             int64                                     `json:"id"`
		Name           string                                    `json:"name"`
		ServiceAccount *serviceaccounts.ServiceAccountProfileDTO `json:"serviceaccount"`
	}
}

OpenAPI generation

Developers can re-create the OpenAPI v2 and v3 specifications using the following command:


make swagger-clean && make openapi3-gen

They can observe its output into the public/api-merged.json and public/openapi3.json files.

Finally, they can browser and try out both the OpenAPI v2 and v3 via the Swagger UI editor (served by the grafana server) by navigating to /swagger.