Skip to content
Proud to collaborate with Microsoft for Startups

gcp.secretmanager.secret.ensure ​

Ensure a GCP Secret Manager secret exists with labels, replication, and retention policy.

Overview ​

PropertyValue
Workflow typeLinear
LibraryBase-gcp
Version1.0

Input Schema ​

FieldTypeRequiredDefaultDescription
connection_uuiduuidYes—GCP CloudConnection UUID.
project_idstringNo—GCP project override.
secret_idstringYes—Secret Manager secret id.
labelsjsonNo—Labels to apply to the secret.
replicationjsonNo—Automatic or user-managed replication config.
expire_timestringNo—Optional ISO-8601 expiration timestamp.
ttl_secondsintegerNo—Optional time-to-live in seconds.
annotationsjsonNo—Deployment metadata to carry in labels or provider annotations when supported.

Output Schema ​

FieldTypeRequiredDefaultDescription
connection_uuiduuidNo—Echoed connection UUID.
project_idstringNo—Effective project id.
secret_idstringNo—Secret id.
secret_namestringNo—Full secret resource name.
createdbooleanNo—True when the secret was newly created.
updatedbooleanNo—True when metadata was patched.
etagstringNo—Provider etag.
labelsjsonNo—Effective labels.
replicationjsonNo—Automatic or user-managed replication config.
expire_timestringNo—Optional ISO-8601 expiration timestamp.
ttl_secondsintegerNo—Optional time-to-live in seconds.
annotationsjsonNo—Deployment metadata to carry in labels or provider annotations when supported.
failure_reasonstringNo—Human-readable failure reason.
failed_stepstringNo—Failed logical step.
failed_layerjsonNo—Engine failed layer envelope.
failed_at_statestringNo—State where failure occurred.
errorstringNo—Error message.
error_typestringNo—Error class.

States ​

StateInitialTerminalSuccessAuto-advanceDescription
pendingYesNo—preflight—
ensuringNoNo—complete—
preflightingNoNo—execute—
completedNoYesYes——
failedNoYesNo——

State Diagram ​

Transitions ​

FromActionToDescription
pendingpreflightpreflighting—
preflightingexecuteensuring—
ensuringcompletecompleted—
* (any state)failfailed—

API Usage ​

bash
POST /api/workflows/start
Content-Type: application/json

{
  "workflow_type": "gcp.secretmanager.secret.ensure",
  "initial_data": {
    "connection_uuid": "value",
    "secret_id": "value"
  }
}