v1

latestOpenAPI 3.1.02026-07-26106201349.6 KB
Gateway

Get Evaluator

Retrieves an evaluator by name. Use this to monitor build progress after creation (step 6 in the Create Evaluator workflow).

Possible states:

  • BUILDING - Environment is being prepared
  • ACTIVE - Evaluator is ready to use
  • BUILD_FAILED - Check build logs via Get Evaluator Build Log Endpoint
get/v1/accounts/{account_id}/evaluators/{evaluator_id}

Path parameters

account_idstring required

The Account Id

evaluator_idstring required

The Evaluator Id

Query parameters

readMaskstring

The fields to be returned in the response. If empty or "*", all fields will be returned.

Response

A successful response.

namestring
displayNamestring
descriptionstring
createTimestring date-time
createdBystring
updateTimestring date-time
state'STATE_UNSPECIFIED' | 'ACTIVE' | 'BUILDING' | 'BUILD_FAILED'
requirementsstring
entryPointstring
commitHashstring
defaultDatasetstring
encryptionState'ENCRYPTION_STATE_UNSPECIFIED' | 'ENCRYPTION_STATE_PLAINTEXT' | 'ENCRYPTION_STATE_CMEK'

EncryptionState is the authoritative, per-resource CMEK marker: the single source of truth for whether a resource's customer-data artifacts are encrypted. It is stamped at resource creation from the owning account's CMEK config and is immutable for the resource's life, so a resource always reads back with the state it was created under regardless of the account's current flag. The encrypt-on-write / decrypt-on-read decision for the resource's data keys off this field.

  • ENCRYPTION_STATE_UNSPECIFIED: Unstamped/legacy rows that predate CMEK. Treated as PLAINTEXT.
  • ENCRYPTION_STATE_PLAINTEXT: Customer-data artifacts are stored as plaintext (Fireworks-owned, no CMEK).
  • ENCRYPTION_STATE_CMEK: Customer-data artifacts are CMEK-encrypted; reads MUST decrypt (fail-closed).