Targets
Bitwarden
Was this page helpful?
Documentation Index
Fetch the complete documentation index at: /docs/llms.txt
Use this file to discover all available pages before exploring further.
| Setting | Required | Description |
|---|---|---|
| Client ID | Yes | API client ID from Admin Console, Settings, Organization info, such as organization.a1b2c3d4. |
| Client secret | Yes | API client secret shown beside that client ID. Stored encrypted. |
| API URL | Address of the Bitwarden API. Leave empty for the US cloud; use https://api.bitwarden.eu for the EU cloud, or https://your.domain/api when self-hosting. | |
| Identity URL | Address that issues the access token. Leave empty for the US cloud; use https://identity.bitwarden.eu for the EU cloud, or https://your.domain/identity when self-hosting. |
| Capability | Required | Granted by (any one) |
|---|---|---|
| Manage members | Yes | Organization API key |
| Read groups | Yes | Organization API key |
| Field | Type | Required | Description |
|---|---|---|---|
email | reference, user | Yes | Address the invitation goes to and the member signs in with. Cannot change once the member exists. Names the account rather than describing it, so a diff leaves it out. |
role | enum | Role the member holds in the organization. Values: owner (Owner), admin (Admin), user (User). | |
externalId | string | Identifier linking the member to a directory outside Bitwarden. | |
active | bool | Whether the member is active. An inactive member is revoked, and keeps what they stored. | |
groups | grant | Groups the member belongs to, which is what carries collection access. One row grants one group. | |
groups[] | string | Group ID. |
| Account field | Worker field |
|---|---|
email | worker.business_email |
stage active {
target bitwarden.user {
email = worker.business_email
role = "user"
active = true
groups = ["Engineering"]
}
}
Was this page helpful?