Documentation / CLI / Reference
CLI command reference Generated reference for every supported Constal CLI command, argument, option, and corresponding public Platform API operation.
On this page Command index Auth Context Deploy Deployments Agents Runs Resources Bindings Credentials Channels Policies Analytics Evals Memory Customers Artifacts Exports Anchors Stages Tables This reference is generated directly from the command registry used by constal --help. A documented command that is absent from the executable, or an executable command missing here, fails the documentation build. Commands use only public /v1 Platform API endpoints.
Global overrides are available on every command. CONSTAL_API_KEY, CONSTAL_PLATFORM_URL, CONSTAL_NAMESPACE, and CONSTAL_TENANT override stored configuration. Prefer --output json or jsonl for automation and preserve caller-stable event identifiers when retrying an uncertain mutation.
Command index
Group Commands auth auth login , auth logout , auth statuscontext context show , context usedeploy deploydeployments deployments create , deployments getagents agents list , agents get , agents rollout get , agents rollout promote , agents rollout rollbackruns runs start , runs session , runs events , runs workflow , runs get , runs detail , runs journal , runs journal-window , runs waits , runs resolve , runs steer , runs stream , runs delete-session , runs deletion , runs pause , runs resume , runs cancel , runs interrupt , runs policy , runs rebind , runs truncate , runs branchresources resources list , resources create , resources get , resources delete , resources control , resources enable , resources disablebindings bindings list , bindings create , bindings get , bindings delete , bindings promote , bindings enable , bindings disable , bindings revokecredentials credentials providers catalog , credentials providers list , credentials providers get , credentials providers install , credentials list , credentials get , credentials create , credentials version , credentials activate , credentials rotate , credentials authorize , credentials revoke , credentials consumers , credentials uses , credentials eventschannels channels list , channels get , channels send , channels message , channels eventspolicies policies evaluateanalytics analytics summary , analytics live , analytics dashboard , analytics query , analytics export , analytics export-getevals evals datasets list , evals datasets create , evals datasets draft , evals datasets cases , evals datasets add-case , evals datasets delete-case , evals datasets capture , evals datasets publish , evals scores start , evals scores get , evals scores cancel , evals labels request , evals scorers list , evals scorers create , evals scorers get , evals suites list , evals suites start , evals suites get , evals suites cancel , evals compare , evals baseline , evals policy get , evals policy set , evals samples list , evals schedules list , evals schedules get , evals schedules apply , evals schedules delete , evals schedules run , evals training providers , evals training models , evals training list , evals training start , evals training get , evals training cancel , evals training checkpoint-gateways , evals training create-modelmemory memory stores list , memory stores create , memory stores get , memory stores delete , memory list , memory create , memory get , memory deletecustomers customers list , customers get , customers put , customers enable , customers disable , customers map , customers unmap , customers bind-policy , customers unbind-policyartifacts artifacts getexports exports getanchors anchors getstages stages get , stages recovertables tables get , tables export-get
Auth
auth login
Save a Constal API key using a hidden prompt, stdin, or a file.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --token-stdinRead the API key from stdin. --token-file <FILE>Read the API key from a file.
sh
printf '%s' "$CONSTAL_API_KEY " | constal auth login --token-stdin
auth logout
Remove the locally stored Constal API key.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
auth status
Check whether the current credentials can read the selected namespace.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
Context
context show
Show the effective origin, tenant restriction, namespace, and credential source.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
context use
Persist the default origin, tenant restriction, or namespace.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Set the Platform API origin. --namespace <NAME>Set the default namespace. --tenant <NAME>Set the tenant restriction. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --clear-tenantRemove the tenant restriction.
sh
constal context use --namespace production
sh
constal context use --tenant acme
Deploy
deploy
Deploy an existing Constal, LangGraph, Mastra, OpenAI SDK, or Claude Managed Agents project unchanged.
text
constal deploy <source>
Argument Meaning sourceProject directory, deployment archive, or Git URL with an optional ref fragment.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --idempotency-key <KEY>Override the content-derived deployment key. --manifest <PATH>Select a Constal manifest within a local project; package it at the project root. --rollout <STRATEGY>Activate immediately or begin a canary. Values: immediate, canary. --fraction <RATE>Fraction of eligible new Sessions assigned to the candidate. --tags <JSON>Optional exact-match tag selector for canary eligibility. --mastra-storage <MODE>Substitute Constal storage or retain the project's configured Mastra store. Values: constal, project. --bind <NAME=CRN>Bind a framework transport or integration to an existing Resource. --waitWait for the authoritative build result; use --no-wait to return after upload. --timeout <SECONDS>Maximum time to wait for the build.
sh
constal deploy https://github.com/example/agent#main
sh
constal deploy https://github.com/example/agent#v2.1.0
Deployments
deployments create
Upload an immutable executable ZIP or tar.gz package.
text
constal deployments create <archive>
Argument Meaning archivePath to the ZIP or tar.gz package.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --idempotency-key <KEY>Override the content-derived deployment key. --rollout <STRATEGY>Activate immediately or begin a canary. Values: immediate, canary. --fraction <RATE>Fraction of eligible new Sessions assigned to the candidate. --tags <JSON>Optional exact-match tag selector for canary eligibility. --mastra-storage <MODE>Substitute Constal storage or retain the project's configured Mastra store. Values: constal, project. --bind <NAME=CRN>Bind a framework transport or integration to an existing Resource.
sh
constal deployments create support-agent.zip
deployments get
Read deployment build and publication state.
text
constal deployments get <deployment>
Argument Meaning deploymentDeployment UUID.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
Agents
agents list
List deployed Agents in the namespace.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
agents get
Read one deployed Agent.
text
constal agents get <agent>
Argument Meaning agentAgent id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
agents rollout get
Read the active or most recent canary rollout.
text
constal agents rollout get <agent>
Argument Meaning agentAgent id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
Promote one exact canary deployment.
text
constal agents rollout promote <agent>
Argument Meaning agentAgent id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --deployment <REVISION>Exact canary deployment revision. Required. --reason <TEXT>Record why this rollout decision was made. Required. --event-id <ID>Use a caller-stable idempotency event identifier.
agents rollout rollback
Roll back one exact canary deployment.
text
constal agents rollout rollback <agent>
Argument Meaning agentAgent id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --deployment <REVISION>Exact canary deployment revision. Required. --reason <TEXT>Record why this rollout decision was made. Required. --event-id <ID>Use a caller-stable idempotency event identifier.
Runs
runs start
Start an Agent Run in a stable session.
text
constal runs start <agent> <session>
Argument Meaning agentAgent id. sessionStable session id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --data <JSON or @FILE or @->Agent input JSON. --deliver <MODE>Queue work or drive it live. Values: queue, live. --tags <JSON or @FILE or @->Attach bounded tags used by policy-governed live sampling. --event-id <ID>Use a caller-stable idempotency event identifier.
sh
constal runs start support customer-42 --data @request.json --deliver live
runs session
Read bounded authoritative session state.
text
constal runs session <agent> <session>
Argument Meaning agentAgent id. sessionSession id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --limit <COUNT>Bound the number of returned records.
runs events
Page accepted session events and ledger history.
text
constal runs events <agent> <session>
Argument Meaning agentAgent id. sessionSession id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor. --limit <COUNT>Bound the number of returned records.
runs workflow
Read the authoritative current workflow view.
text
constal runs workflow <agent> <session>
Argument Meaning agentAgent id. sessionSession id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
runs get
Read one authoritative Run.
text
constal runs get <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
runs detail
Read bounded Run, fact, wait, steer, and journal detail.
text
constal runs detail <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --limit <COUNT>Bound the number of returned records.
runs journal
Read the cryptographically rooted Run journal.
text
constal runs journal <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor. --limit <COUNT>Bound the number of returned records.
runs journal-window
Page an operator-oriented Run journal window.
text
constal runs journal-window <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor. --before <CURSOR>Read before a returned cursor. --limit <COUNT>Bound the number of returned records.
runs waits
List open durable waits for a session.
text
constal runs waits <agent> <session>
Argument Meaning agentAgent id. sessionSession id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
runs resolve
Resolve one durable wait with a schema-checked value.
text
constal runs resolve <agent> <session> <promise>
Argument Meaning agentAgent id. sessionSession id. promiseWait promise id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --value <JSON or @FILE or @->Resolution value. --event-id <ID>Use a caller-stable idempotency event identifier.
runs steer
Append authenticated guidance to a session.
text
constal runs steer <agent> <session>
Argument Meaning agentAgent id. sessionSession id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --text <TEXT>Guidance text. Required. --data <JSON or @FILE or @->Optional structured guidance. --event-id <ID>Use a caller-stable idempotency event identifier.
runs stream
Stream committed Run frames over Server-Sent Events.
text
constal runs stream <agent> <session>
Argument Meaning agentAgent id. sessionSession id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --run <RUN>Run id to stream. Required.
runs delete-session
Delete a session asynchronously and preserve a bounded tombstone.
text
constal runs delete-session <agent> <session>
Argument Meaning agentAgent id. sessionSession id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier.
runs deletion
Read asynchronous session-deletion progress.
text
constal runs deletion <agent> <session>
Argument Meaning agentAgent id. sessionSession id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
runs pause
Pause one exact Run.
text
constal runs pause <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
runs resume
Resume one exact Run.
text
constal runs resume <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
runs cancel
Cancel one exact Run.
text
constal runs cancel <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
runs interrupt
Interrupt a Run at a safe point or abort active work.
text
constal runs interrupt <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --mode <MODE>Use safe-point or abort. Required. Values: safe-point, abort. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
runs policy
Apply an idempotent policy control to one Run.
text
constal runs policy <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
runs rebind
Apply an idempotent rebind control to one Run.
text
constal runs rebind <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
runs truncate
Apply an idempotent truncate control to one Run.
text
constal runs truncate <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
runs branch
Apply an idempotent branch control to one Run.
text
constal runs branch <agent> <session> <run>
Argument Meaning agentAgent id. sessionSession id. runRun id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
Resources
resources list
List configured Resources, optionally by kind.
text
constal resources list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --kind <KIND>Filter by Resource kind. --after <CURSOR>Continue after a returned cursor. --limit <COUNT>Bound the number of returned records.
resources create
Create a configured Resource from a JSON definition.
text
constal resources create
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
resources get
Read one tenant-managed Resource.
text
constal resources get <kind> <id>
Argument Meaning kindResource kind. idResource id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
resources delete
Delete one tenant-managed Resource.
text
constal resources delete <kind> <id>
Argument Meaning kindResource kind. idResource id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
resources control
Read one Resource control head.
text
constal resources control <kind> <id>
Argument Meaning kindResource kind. idResource id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
resources enable
Enable a tenant-managed Resource.
text
constal resources enable <kind> <id>
Argument Meaning kindResource kind. idResource id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier. --reason <TEXT>Record an optional operator reason.
resources disable
Disable a tenant-managed Resource.
text
constal resources disable <kind> <id>
Argument Meaning kindResource kind. idResource id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier. --reason <TEXT>Record an optional operator reason.
Bindings
bindings list
List scoped Resource and Credential assignments.
text
constal bindings list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor. --limit <COUNT>Bound the number of returned records.
bindings create
Create a scoped assignment from a JSON definition.
text
constal bindings create
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
bindings get
Read one scoped assignment.
text
constal bindings get <binding>
Argument Meaning bindingBinding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
bindings delete
Delete one scoped assignment idempotently.
text
constal bindings delete <binding>
Argument Meaning bindingBinding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier.
Promote a binding when its current revision still matches.
text
constal bindings promote <binding>
Argument Meaning bindingBinding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
bindings enable
Enable one scoped assignment.
text
constal bindings enable <binding>
Argument Meaning bindingBinding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier. --reason <TEXT>Record an optional operator reason.
bindings disable
Disable one scoped assignment.
text
constal bindings disable <binding>
Argument Meaning bindingBinding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier. --reason <TEXT>Record an optional operator reason.
bindings revoke
Revoke one scoped assignment.
text
constal bindings revoke <binding>
Argument Meaning bindingBinding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier. --reason <TEXT>Record an optional operator reason.
Credentials
credentials providers catalog
List Credential Provider packages visible to the tenant.
text
constal credentials providers catalog
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
credentials providers list
List installed Credential Providers.
text
constal credentials providers list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
credentials providers get
Read one installed Credential Provider.
text
constal credentials providers get <provider>
Argument Meaning providerProvider id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
credentials providers install
Install a catalog Credential Provider package.
text
constal credentials providers install
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <SOURCE>Read protected setup JSON from @FILE or @-.
sh
constal credentials providers install --body @provider-setup.json
credentials list
List Credentials without returning material.
text
constal credentials list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
credentials get
Read authoritative Credential metadata.
text
constal credentials get <credential>
Argument Meaning credentialCredential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
credentials create
Create, mint, or begin authorization for a Credential.
text
constal credentials create <credential>
Argument Meaning credentialNew Credential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --provider <CRN>Installed Credential Provider CRN. Required. --configuration <JSON or @FILE>Provider-defined non-secret configuration. --material-file <FILE>Read imported secret material from a file. --material-stdinRead imported secret material from stdin. --policies <JSON or @FILE>Optional Policy CRN array.
credentials version
Add imported material as a scheduled Credential version.
text
constal credentials version <credential>
Argument Meaning credentialCredential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --material-file <FILE>Read secret material from a file. --material-stdinRead secret material from stdin.
credentials activate
Activate a Credential lifecycle operation.
text
constal credentials activate <credential>
Argument Meaning credentialCredential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
credentials rotate
Rotate a Credential lifecycle operation.
text
constal credentials rotate <credential>
Argument Meaning credentialCredential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
credentials authorize
Authorize a Credential lifecycle operation.
text
constal credentials authorize <credential>
Argument Meaning credentialCredential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
credentials revoke
Revoke a Credential lifecycle operation.
text
constal credentials revoke <credential>
Argument Meaning credentialCredential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
credentials consumers
List bounded Credential consumers.
text
constal credentials consumers <credential>
Argument Meaning credentialCredential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor. --limit <COUNT>Bound the number of returned records.
credentials uses
List bounded Credential uses.
text
constal credentials uses <credential>
Argument Meaning credentialCredential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor.
credentials events
List bounded Credential events.
text
constal credentials events <credential>
Argument Meaning credentialCredential id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor.
Channels
channels list
List deployed Channels.
text
constal channels list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
channels get
Read one deployed Channel.
text
constal channels get <channel>
Argument Meaning channelChannel id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
channels send
Send one outbound Channel message.
text
constal channels send <channel>
Argument Meaning channelChannel id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
channels message
Read one outbound delivery receipt.
text
constal channels message <channel> <message>
Argument Meaning channelChannel id. messageMessage id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
channels events
Read bounded Channel events.
text
constal channels events <channel>
Argument Meaning channelChannel id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor. --limit <COUNT>Bound the number of returned records.
Policies
policies evaluate
Evaluate a deployed Policy against a normalized test input.
text
constal policies evaluate <policy>
Argument Meaning policyPolicy id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
Analytics
analytics summary
Read a bounded recent analytics summary.
text
constal analytics summary
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
analytics live
Query live analytics data.
text
constal analytics live
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
analytics dashboard
Query dashboard analytics data.
text
constal analytics dashboard
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
analytics query
Query query analytics data.
text
constal analytics query
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
analytics export
Create export analytics data.
text
constal analytics export
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
analytics export-get
Download one namespace-owned analytics export.
text
constal analytics export-get <ref>
Argument Meaning refExport artifact hash.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --out <FILE>Write the binary response to a file instead of stdout. --quietSuppress the file-write status message.
Evals
evals datasets list
List immutable Dataset Resources.
text
constal evals datasets list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals datasets create
Create or idempotently initialize a Dataset draft.
text
constal evals datasets create <dataset>
Argument Meaning datasetDataset id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals datasets draft
Read a Dataset draft head.
text
constal evals datasets draft <dataset>
Argument Meaning datasetDataset id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals datasets cases
Page cases in a Dataset draft.
text
constal evals datasets cases <dataset>
Argument Meaning datasetDataset id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor. --limit <COUNT>Bound the number of returned records.
evals datasets add-case
Create or replace one caller-identified Dataset case.
text
constal evals datasets add-case <dataset>
Argument Meaning datasetDataset id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals datasets delete-case
Delete one case from a Dataset draft.
text
constal evals datasets delete-case <dataset> <case>
Argument Meaning datasetDataset id. caseCase id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals datasets capture
Capture a recorded Agent interaction into a Dataset draft.
text
constal evals datasets capture <dataset>
Argument Meaning datasetDataset id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals datasets publish
Publish the current Dataset draft as an immutable version.
text
constal evals datasets publish <dataset>
Argument Meaning datasetDataset id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals scores start
Score a pinned Subject asynchronously and append its verdict to the judged Session.
text
constal evals scores start
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --idempotency-key <KEY>Use a caller-stable idempotency key.
evals scores get
Read one durable scoring job.
text
constal evals scores get <score>
Argument Meaning scoreScore job id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals scores cancel
Cancel one durable scoring job.
text
constal evals scores cancel <score>
Argument Meaning scoreScore job id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals labels request
Open a durable, schema-checked human labeling wait.
text
constal evals labels request
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --idempotency-key <KEY>Use a caller-stable idempotency key.
evals scorers list
List versioned Scorer Resources.
text
constal evals scorers list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals scorers create
Create a versioned code, Judge Agent, or human-review Scorer.
text
constal evals scorers create
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals scorers get
Read one Scorer Resource.
text
constal evals scorers get <scorer>
Argument Meaning scorerScorer id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals suites list
Page evaluation suites by most recent activity.
text
constal evals suites list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor. --limit <COUNT>Bound the number of returned records.
evals suites start
Run a fresh suite over an immutable Dataset.
text
constal evals suites start
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals suites get
Read authoritative suite progress and results.
text
constal evals suites get <suite>
Argument Meaning suiteSuite id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals suites cancel
Cancel a running evaluation suite.
text
constal evals suites cancel <suite>
Argument Meaning suiteSuite id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals compare
Compare paired suite and baseline verdicts.
text
constal evals compare
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals baseline
Set an Agent's evaluation baseline.
text
constal evals baseline
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals policy get
Read the namespace eval door policy pinned at Run admission.
text
constal evals policy get
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals policy set
Atomically set sampling rates, Scorers, and eval budget ceilings.
text
constal evals policy set
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals samples list
Page asynchronous live-traffic scoring dispatches.
text
constal evals samples list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --before <TIMESTAMP>Read samples created before this millisecond timestamp. --limit <COUNT>Bound the number of returned records.
evals schedules list
List continuous evaluation schedules.
text
constal evals schedules list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals schedules get
Read one continuous evaluation schedule.
text
constal evals schedules get <schedule>
Argument Meaning scheduleSchedule id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals schedules apply
Create or atomically update a continuous evaluation schedule.
text
constal evals schedules apply <schedule>
Argument Meaning scheduleSchedule id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals schedules delete
Delete one exact continuous evaluation schedule revision.
text
constal evals schedules delete <schedule>
Argument Meaning scheduleSchedule id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --expected-hash <HASH>Current schedule hash. Required.
evals schedules run
Run a scheduled Suite now without changing its cadence.
text
constal evals schedules run <schedule>
Argument Meaning scheduleSchedule id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier.
evals training providers
List installed Training Providers and checkpoint capabilities.
text
constal evals training providers
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals training models
List models and pinned prices advertised by one Training Provider.
text
constal evals training models
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --provider <CRN>Training Provider Resource CRN. --hash <HASH>Exact Training Provider Resource hash.
evals training list
Page fine-tuning and reinforcement-learning jobs.
text
constal evals training list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --after <CURSOR>Continue after a returned cursor. --limit <COUNT>Bound the number of returned records.
evals training start
Start a durable metered SFT or RL job.
text
constal evals training start
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals training get
Read authoritative training progress, usage, and results.
text
constal evals training get <job>
Argument Meaning jobTraining job id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
evals training cancel
Cancel a running training job.
text
constal evals training cancel <job>
Argument Meaning jobTraining job id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
evals training checkpoint-gateways
List exact Gateway revisions compatible with one durable checkpoint.
text
constal evals training checkpoint-gateways <job>
Argument Meaning jobSucceeded Training Job id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --step <COUNT>Exact checkpoint step. --ref <HASH>Exact checkpoint Artifact hash.
evals training create-model
Import a checkpoint through a compatible Gateway and create a Model.
text
constal evals training create-model <job>
Argument Meaning jobSucceeded Training Job id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
Memory
memory stores list
List configured Memory Stores.
text
constal memory stores list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
memory stores create
Create a Memory Store Resource.
text
constal memory stores create
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
memory stores get
Read one Memory Store.
text
constal memory stores get <id>
Argument Meaning idMemory Store id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
memory stores delete
Delete one Memory Store.
text
constal memory stores delete <id>
Argument Meaning idMemory Store id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
memory list
List configured Memory Resources.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
memory create
Create a Memory Resource.
text
constal memory create
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
memory get
Read one Memory Resource.
text
constal memory get <id>
Argument Meaning idMemory id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
memory delete
Delete one Memory Resource.
text
constal memory delete <id>
Argument Meaning idMemory id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
Customers
customers list
List downstream customers.
text
constal customers list
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
customers get
Read one downstream customer.
text
constal customers get <customer>
Argument Meaning customerCustomer id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
customers put
Create or update a downstream customer.
text
constal customers put <customer>
Argument Meaning customerCustomer id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
customers enable
Enable a downstream customer.
text
constal customers enable <customer>
Argument Meaning customerCustomer id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier. --reason <TEXT>Record an optional operator reason.
customers disable
Disable a downstream customer.
text
constal customers disable <customer>
Argument Meaning customerCustomer id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --event-id <ID>Use a caller-stable idempotency event identifier. --reason <TEXT>Record an optional operator reason.
customers map
Map an external identity to a downstream customer.
text
constal customers map <customer> <binding>
Argument Meaning customerCustomer id. bindingMapping or binding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
customers unmap
Remove an external identity mapping from a downstream customer.
text
constal customers unmap <customer> <binding>
Argument Meaning customerCustomer id. bindingMapping or binding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
customers bind-policy
Bind a Policy to a downstream customer.
text
constal customers bind-policy <customer> <binding>
Argument Meaning customerCustomer id. bindingMapping or binding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
customers unbind-policy
Remove a Policy binding from a downstream customer.
text
constal customers unbind-policy <customer> <binding>
Argument Meaning customerCustomer id. bindingMapping or binding id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin. --event-id <ID>Use a caller-stable idempotency event identifier.
Artifacts
artifacts get
Download an authorized content-addressed artifact.
text
constal artifacts get <ref>
Argument Meaning refArtifact hash.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --out <FILE>Write the binary response to a file instead of stdout. --quietSuppress the file-write status message.
Exports
exports get
Download a redacted durable export.
text
constal exports get <ref>
Argument Meaning refExport hash.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --out <FILE>Write the binary response to a file instead of stdout. --quietSuppress the file-write status message.
Anchors
anchors get
Download an authorized customer audit anchor.
text
constal anchors get <ref>
Argument Meaning refAnchor hash.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --out <FILE>Write the binary response to a file instead of stdout. --quietSuppress the file-write status message.
Stages
stages get
Inspect one map/reduce stage.
text
constal stages get <stage>
Argument Meaning stageStage hash.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl.
stages recover
Request authorized stage recovery.
text
constal stages recover <stage>
Argument Meaning stageStage hash.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --body <JSON or @FILE or @->Read the JSON request body inline, from a file, or from stdin.
Tables
tables get
Read a table branch head and state.
text
constal tables get <table>
Argument Meaning tableTable id.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --branch <NAME>Table branch; defaults to main.
tables export-get
Read an exact table catalog commit, export, or intent.
text
constal tables export-get <table> <branch> <sequence> <hash>
Argument Meaning tableTable id. branchBranch name. sequenceCommit sequence. hashCommit hash.
Option Meaning --helpShow command help. --versionShow the CLI version. --origin <URL>Override the configured Platform API origin. --namespace <NAME>Override the configured namespace. --tenant <NAME>Restrict authentication to this tenant. --output <FORMAT>Render table, json, or jsonl output. Values: table, json, jsonl. --out <FILE>Write the binary response to a file instead of stdout. --quietSuppress the file-write status message.