@@ -152020,6 +152020,13 @@ paths:
152020152020 Submit a DDSQL statement and return either a `running` state with an opaque `query_id`
152021152021 for the client to poll, or a `completed` state with the column-major result set inlined
152022152022 when the query finishes quickly enough to be served synchronously.
152023+
152024+ For a scoped application key, include `timeseries_query` in its scopes.
152025+ A query that does not read a data source, such as `SELECT 1`, requires no additional
152026+ data-source permissions. Queries that read data sources also require the user or
152027+ service account that owns the application key to have the corresponding data access
152028+ permissions through their roles. The `timeseries_query` permission does not grant
152029+ access to the underlying data sources.
152023152030 operationId: ExecuteDdsqlTabularQuery
152024152031 requestBody:
152025152032 content:
@@ -152122,16 +152129,30 @@ paths:
152122152129 schema:
152123152130 $ref: "#/components/schemas/JSONAPIErrorResponse"
152124152131 description: Internal Server Error
152132+ security:
152133+ - apiKeyAuth: []
152134+ appKeyAuth: []
152135+ - AuthZ:
152136+ - timeseries_query
152125152137 summary: Execute a tabular DDSQL query
152126152138 tags:
152127152139 - DDSQL
152140+ "x-permission":
152141+ operator: OR
152142+ permissions:
152143+ - timeseries_query
152128152144 /api/v2/ddsql/query/tabular/fetch:
152129152145 post:
152130152146 description: |-
152131152147 Poll a previously submitted DDSQL query for results. Pass the opaque `query_id` returned
152132152148 by a prior `ExecuteDdsqlTabularQuery` (or by a prior `FetchDdsqlTabularQuery` that
152133152149 returned `state: running`) and the server returns either a `running` state to poll again
152134152150 or a `completed` state with the column-major result set inlined.
152151+
152152+ For a scoped application key, include `timeseries_query` in its scopes.
152153+ Fetch results as the same user and organization that submitted the query.
152154+ The user or service account that owns the application key must have the data access
152155+ permissions required by the queried data sources through their roles.
152135152156 operationId: FetchDdsqlTabularQuery
152136152157 requestBody:
152137152158 content:
@@ -152230,9 +152251,18 @@ paths:
152230152251 schema:
152231152252 $ref: "#/components/schemas/JSONAPIErrorResponse"
152232152253 description: Internal Server Error
152254+ security:
152255+ - apiKeyAuth: []
152256+ appKeyAuth: []
152257+ - AuthZ:
152258+ - timeseries_query
152233152259 summary: Fetch the result of a DDSQL query
152234152260 tags:
152235152261 - DDSQL
152262+ "x-permission":
152263+ operator: OR
152264+ permissions:
152265+ - timeseries_query
152236152266 /api/v2/deletion/data/{product}:
152237152267 post:
152238152268 description: Creates a data deletion request by providing a query and a timeframe targeting the proper data.
0 commit comments