---
title: "List certificates in a specified key vault"
method: GET
path: "/certificates"
tags: ["Certificates"]
---

# List certificates in a specified key vault

`GET /certificates`

The GetCertificates operation returns the set of certificates resources in the specified key vault. This operation requires the certificates/list permission.

## Query parameters

- `maxresults` integer
- `includePending` boolean
- `api-version` string, required

## Response `200`

A response message containing a list of certificates along with a link to the next page of certificates.

- CertificateListResult — The certificate list result.
  - `value` CertificateItem[] — A response message containing a list of certificates in the key vault along with a link to the next page of certificates.
    - `id` string — Certificate identifier.
    - `attributes` CertificateAttributes — The object attributes managed by the KeyVault service.
      - `enabled` boolean — Determines whether the object is enabled.
      - `nbf` integer — Not before date in UTC.
      - `exp` integer — Expiry date in UTC.
      - `created` integer — Creation time in UTC.
      - `updated` integer — Last updated time in UTC.
    - `tags` object — Application specific metadata in the form of key-value pairs.
    - `x5t` string, base64url — Thumbprint of the certificate.
  - `nextLink` string — The URL to get the next set of certificates.

## Other responses

- `default` — Key Vault error response describing why the operation failed.

---

[API](https://skmtc.net/azure/apis/keyvaultclient.md) · [All operations](https://skmtc.net/azure/apis/keyvaultclient/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/azure/keyvaultclient/revisions/1f612999ec40/schema)
