> ## Documentation Index
> Fetch the complete documentation index at: https://trueforge.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# List configured skills

> All configured skills with nested manifests (settings / admin projection).



## OpenAPI

````yaml /openapi.json get /api/v1/settings/skills
openapi: 3.1.0
info:
  description: >-
    HTTP API for the TrueForge agent server (`/api/v1`). Interactive docs are
    served at `/api/v1/docs` (OpenAPI JSON at `/api/v1/openapi.json`).


    **Authentication:** Standalone auth accepts requests without credentials —
    middleware stamps a local default user. When OIDC or TrueFoundry auth is
    configured, protected routes require a valid cookie or `Authorization:
    Bearer` token. There is no built-in API-key scheme; pass custom headers only
    if your reverse proxy or IdP layer requires them.


    Covers DB-backed sessions, the agent registry, settings catalogs, and
    model/MCP/skill/sandbox providers.
  title: TrueForge API
  version: 0.0.0
servers: []
security:
  - BearerAuth: []
tags:
  - name: Internal
  - name: Auth
  - name: Capabilities
  - name: Models
  - name: MCP Servers
  - name: Skills
  - name: Sandboxes
  - name: Web Search Providers
  - name: Agents
  - name: Schedules
  - name: Agent Sessions
paths:
  /api/v1/settings/skills:
    get:
      tags:
        - Skills
      summary: List configured skills
      description: >-
        All configured skills with nested manifests (settings / admin
        projection).
      responses:
        '200':
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ListSkillsResponse'
          description: All configured skills.
        '401':
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/RequestErrorResponse'
          description: OIDC is configured and the request has no valid session cookie.
        '403':
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/RequestErrorResponse'
          description: OIDC is configured and the caller is authenticated but not an admin.
components:
  schemas:
    ListSkillsResponse:
      properties:
        data:
          items:
            $ref: '#/components/schemas/ConfiguredSkill'
          type: array
      required:
        - data
      type: object
    RequestErrorResponse:
      properties:
        error:
          properties:
            code:
              description: Optional machine-readable error code; null when not applicable.
              type:
                - string
                - 'null'
            message:
              description: Human-readable explanation of the failure.
              type: string
            param:
              description: >-
                Optional request field that caused the error; null when not
                field-specific.
              type:
                - string
                - 'null'
            type:
              description: Optional error category (e.g. validation vs conflict).
              type: string
          required:
            - message
          type: object
      required:
        - error
      type: object
    ConfiguredSkill:
      additionalProperties: false
      properties:
        manifest:
          $ref: '#/components/schemas/SkillManifest'
        name:
          minLength: 1
          type: string
      required:
        - name
        - manifest
      type: object
    SkillManifest:
      discriminator:
        mapping:
          git: '#/components/schemas/GitSkill'
          truefoundry: '#/components/schemas/TrueFoundryRegistrySkill'
        propertyName: type
      oneOf:
        - $ref: '#/components/schemas/GitSkill'
        - $ref: '#/components/schemas/TrueFoundryRegistrySkill'
    GitSkill:
      additionalProperties: false
      properties:
        description:
          description: Concise guidance for when the agent should use the skill.
          minLength: 1
          type: string
        name:
          $ref: '#/components/schemas/ResourceName'
        path:
          description: >-
            Path to the skill directory within the repository. Omit to use the
            repository root.
          minLength: 1
          pattern: ^[A-Za-z0-9._\-/]+$
          type: string
        ref:
          description: Git ref — branch name, tag, or commit SHA.
          minLength: 1
          pattern: ^[A-Za-z0-9._\-/]+$
          type: string
        type:
          enum:
            - git
          type: string
        url:
          description: Full HTTPS URL of a GitHub or GitLab repository.
          minLength: 1
          pattern: >-
            ^https:\/\/(github\.com\/[A-Za-z0-9._-]+\/[A-Za-z0-9._-]+|gitlab\.com\/[A-Za-z0-9._-]+(?:\/[A-Za-z0-9._-]+)+)(\/|\.git)?$
          type: string
      required:
        - type
        - name
        - url
        - ref
        - description
      type: object
    TrueFoundryRegistrySkill:
      additionalProperties: false
      properties:
        description:
          description: Concise guidance for when the agent should use the skill.
          minLength: 1
          type: string
        display_name:
          minLength: 1
          type: string
        name:
          minLength: 1
          type: string
        repository_name:
          description: Repo where the skill is registered.
          minLength: 1
          type: string
        type:
          enum:
            - truefoundry
          type: string
        version:
          exclusiveMinimum: 0
          type: integer
      required:
        - type
        - name
        - display_name
        - description
        - repository_name
        - version
      type: object
    ResourceName:
      maxLength: 64
      minLength: 2
      pattern: ^[a-z][a-z0-9-]{0,62}[a-z0-9]$
      type: string
  securitySchemes:
    BearerAuth:
      bearerFormat: JWT
      description: >-
        Caller credential (`Authorization: Bearer <token>`). Required on
        protected routes when auth is enabled. Browser sessions may use the
        HttpOnly `id_token` or `accessToken` cookie instead.
      scheme: bearer
      type: http

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.