security.org-workflow-policy.set ​
Disable (or record the state of) a namespace or workflow type for the current organization.
Upsert one denylist row (disable a namespace or workflow type) for the org.
Overview ​
| Property | Value |
|---|---|
| Workflow type | Atomic |
| Library | App-security |
| Version | 1.0 |
Input Schema ​
| Field | Type | Required | Default | Description |
|---|---|---|---|---|
organization_uuid | uuid | No | — | Resolved server-side from the caller's token; input is advisory. |
actor | string | No | — | Acting user; recorded as created_by. |
target_kind | string | Yes | — | 'namespace' or 'workflow_type'. |
target | string | Yes | — | A namespace (e.g. 'bling') or an exact workflow type (e.g. 'bling.fetch-dre'). |
disabled | boolean | No | — | Defaults to true (presence = OFF). |
Output Schema ​
| Field | Type | Required | Default | Description |
|---|---|---|---|---|
organization_uuid | uuid | No | — | — |
actor | string | No | — | Echo of acting user when provided. |
target_kind | string | No | — | — |
target | string | No | — | — |
disabled | boolean | No | — | — |
created | boolean | No | — | — |
failure_reason | string | No | — | — |
failure_type | string | No | — | — |
failed_action | string | No | — | — |
failed_at_state | string | No | — | — |
failed_step | string | No | — | — |
failed_layer | string | No | — | — |
error | string | No | — | — |
error_type | string | No | — | — |
States ​
| State | Initial | Terminal | Success | Auto-advance | Description |
|---|---|---|---|---|---|
pending | Yes | No | — | execute | Accepted |
completed | No | Yes | Yes | — | Upserted |
failed | No | Yes | No | — | Failed |
State Diagram ​
Transitions ​
| From | Action | To | Description |
|---|---|---|---|
pending | execute | completed | — |
* (any state) | fail | failed | — |
API Usage ​
bash
POST /api/workflows/start
Content-Type: application/json
{
"workflow_type": "security.org-workflow-policy.set",
"initial_data": {
"target_kind": "value",
"target": "value"
}
}