Create a pack from an existing OCI image
const url = 'https://your-org.evershell.ai/v1/packs';const options = { method: 'POST', headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'}, body: '{"image_ref":"registry.example.com/team/pack:1.2.0","visibility":"org"}'};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request POST \ --url https://your-org.evershell.ai/v1/packs \ --header 'Authorization: Bearer <token>' \ --header 'Content-Type: application/json' \ --data '{ "image_ref": "registry.example.com/team/pack:1.2.0", "visibility": "org" }'Permissions: caps:write.
The image must already exist in a registry the CP can pull.
All pack metadata (name, version, capabilities) is read from
pack.yaml inside the image. Use POST /packs/upload to
push an image directly.
Authorizations
Section titled “Authorizations ”Request Body required
Section titled “Request Body required ”object
Example
registry.example.com/team/pack:1.2.0Responses
Section titled “ Responses ”Created
object
Owning org id. Redacted to absent on packs the caller
doesn’t own (platform-shipped + foreign community
packs) — use owned to distinguish.
Caps.yaml fragment shipped by the pack
Comma-separated names of related packs (display hint).
Where the image was pushed from (upload, image_ref, clone).
True when the pack is org-scoped to the caller’s org.
Example
{ "id": "pack_01HZ", "version": "1.2.0", "tier": "recommended", "visibility": "org"}Validation failure
object
object
Closed-enum slug (e.g. permission_denied, validation_error, workspace_not_found)
Human-readable summary
Server-generated request id for correlating logs
Optional structured context. Validation errors land at
details.fields as a per-field map.
object
Example
{ "error": { "code": "permission_denied", "message": "caller lacks required scope", "request_id": "7f3a9c2e" }}State conflict (in-use cascade guard, last-owner, etc.)
object
object
Closed-enum slug (e.g. permission_denied, validation_error, workspace_not_found)
Human-readable summary
Server-generated request id for correlating logs
Optional structured context. Validation errors land at
details.fields as a per-field map.
object
Example
{ "error": { "code": "permission_denied", "message": "caller lacks required scope", "request_id": "7f3a9c2e" }}Tenant is past_due, decommissioning, or trial-expired
object
object
Closed-enum slug (e.g. permission_denied, validation_error, workspace_not_found)
Human-readable summary
Server-generated request id for correlating logs
Optional structured context. Validation errors land at
details.fields as a per-field map.
object
Example
{ "error": { "code": "permission_denied", "message": "caller lacks required scope", "request_id": "7f3a9c2e" }}