> ## Documentation Index
> Fetch the complete documentation index at: https://docs.trysoma.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Encrypt resource server config

> Encrypt a resource server credential configuration before storage



## OpenAPI

````yaml api-reference/openapi.json post /api/bridge/v1/available-providers/{provider_controller_type_id}/available-credentials/{credential_controller_type_id}/credential/resource-server/encrypt
openapi: 3.1.0
info:
  title: soma
  version: v1
servers: []
security: []
tags:
  - name: task
    description: >-
      Task management endpoints for creating, listing, and managing tasks and
      their messages
  - name: secret
    description: Secret management endpoints for storing and retrieving encrypted secrets
  - name: encryption
    description: >-
      Encryption key management endpoints for envelope keys, data encryption
      keys, and aliases
  - name: bridge
    description: >-
      Bridge endpoints for managing providers, credentials, functions, and MCP
      protocol communication
  - name: _internal
    description: >-
      Internal endpoints for health checks, runtime configuration, and SDK code
      generation
  - name: a2a
    description: >-
      Agent-to-agent communication endpoints for agent cards, definitions, and
      JSON-RPC requests
  - name: v1
    description: API version v1 endpoints
paths:
  /api/bridge/v1/available-providers/{provider_controller_type_id}/available-credentials/{credential_controller_type_id}/credential/resource-server/encrypt:
    post:
      tags:
        - bridge
        - v1
      summary: Encrypt resource server config
      description: Encrypt a resource server credential configuration before storage
      operationId: encrypt-resource-server-configuration
      parameters:
        - name: provider_controller_type_id
          in: path
          description: Provider controller type ID
          required: true
          schema:
            type: string
        - name: credential_controller_type_id
          in: path
          description: Credential controller type ID
          required: true
          schema:
            type: string
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/EncryptCredentialConfigurationParamsInner'
        required: true
      responses:
        '200':
          description: Encrypt resource server configuration
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/WrappedJsonValue'
        '400':
          description: Bad Request
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '500':
          description: Internal Server Error
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
components:
  schemas:
    EncryptCredentialConfigurationParamsInner:
      type: object
      description: |-
        Parameters for encrypting credential configuration.
        Uses dek_alias to look up the DEK to use for encryption.
      required:
        - value
        - dek_alias
      properties:
        dek_alias:
          type: string
          description: >-
            The DEK alias to use for encryption (resolved to actual DEK id
            internally)
        value:
          $ref: '#/components/schemas/WrappedJsonValue'
          description: The raw credential configuration value to encrypt
    WrappedJsonValue: {}
    Error:
      type: object
      required:
        - message
      properties:
        data: {}
        message:
          type: string

````