Get workload details
Get details of a specific workload
Path parameters
Workload name
Response
OK
Whether to permit outbound connections to Docker gateway addresses (host.docker.internal, gateway.docker.internal, 172.17.0.1). These are blocked by default in the egress proxy even when network isolation is on. Only applicable to Docker deployments with network isolation enabled.
Authorization configuration
Command arguments to pass to the container
Environment variables to set in the container
Group name this workload belongs to
Host to bind to
Docker image to use
Name of the workload
Whether network isolation is turned on. This applies the rules in the permission profile. Pointer so that omitting the field defaults to network isolation ENABLED (matching the thv run CLI default); set it explicitly to false to disable network isolation. This also applies on update: a request that omits this field enables isolation, so clients that build update requests from scratch should send it explicitly to avoid unintentionally turning isolation on for a workload that had it off.
Proxy mode to use
Port for the HTTP proxy to listen on
Registry is the optional registry name to resolve the server from (e.g. "default").
Server is the optional server name in the registry (e.g. "io.github.stacklok/fetch"). When both Registry and Server are set, thv resolves the server metadata server-side, filling in image, transport, env vars, permissions, etc. User-provided fields always override registry defaults.
Port to expose from the container
Tools filter
Tools override
Transport configuration
Whether to trust X-Forwarded-* headers from reverse proxies
Remote server specific fields
Volume mounts