---
title: "POST /v1/{+name}"
method: POST
path: "/v1/{+name}"
tags: ["organizations"]
---

# POST /v1/{+name}

`POST /v1/{+name}`

Approves or revokes the consumer key for an API product. After a consumer key is approved, the app can use it to access APIs. A consumer key that is revoked or pending cannot be used to access an API. Any access tokens associated with a revoked consumer key will remain active. However, Apigee checks the status of the consumer key and if set to `revoked` will not allow access to the API.

## Path parameters

- `name` GoogleCloudApigeeV1UpdateAppGroupAppKeyRequest, required — Request for UpdateAppGroupAppKey
  - `action` string — Approve or revoke the consumer key by setting this value to `approve` or `revoke` respectively. The `Content-Type` header, if set, must be set to `application/octet-stream`, with empty body.
  - `apiProducts` string[] — The list of API products that will be associated with the credential. This list will be appended to the existing list of associated API Products for this App Key. Duplicates will be ignored.
  - `appGroupAppKey` GoogleCloudApigeeV1AppGroupAppKey — AppGroupAppKey contains all the information associated with the credentials.
    - `scopes` string[] — Scopes to apply to the app. The specified scope names must already be defined for the API product that you associate with the app.
    - `status` string — Status of the credential. Valid values include `approved` or `revoked`.
    - `consumerKey` string — Immutable. Consumer key.
    - `consumerSecret` string — Secret key.
    - `attributes` GoogleCloudApigeeV1Attribute[] — List of attributes associated with the credential.
      - `name` string — API key of the attribute.
      - `value` string — Value of the attribute.
    - `apiProducts` GoogleCloudApigeeV1APIProductAssociation[] — Output only. List of API products and its status for which the credential can be used. **Note**: Use UpdateAppGroupAppKeyApiProductRequest API to make the association after the consumer key and secret are created.
      - `status` string — The API product credential associated status. Valid values are `approved` or `revoked`.
      - `apiproduct` string — API product to be associated with the credential.
    - `issuedAt` string, int64 — Output only. Time the AppGroup app was created in milliseconds since epoch.
    - `expiresInSeconds` string, int64 — Immutable. Expiration time, in seconds, for the consumer key. If not set or left to the default value of `-1`, the API key never expires. The expiration time can't be updated after it is set.
    - `expiresAt` string, int64 — Output only. Time the AppGroup app expires in milliseconds since epoch.

## Query parameters

- `action` string, required
- `validate` boolean

## Response `200`

Successful response

---

[API](https://skmtc.net/google/apis/apigee.md) · [All operations](https://skmtc.net/google/apis/apigee/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/google/apigee/versions/6e272fa448a7/schema)
