> ## Documentation Index
> Fetch the complete documentation index at: https://docs.ankra.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Get who runs each environment

> Who runs it: for each of the application's environments, the effective autonomy level (you_run_it, together, ankra_runs_it) in every area, the rule that decided it, and the limits. Until the autonomy policy has storage of its own, the organisation layer is seeded from existing settings (auto-remediation policy, Cost Autopilot tier, push-to-deploy) and seeded_from names which; read_state is partial when one of those could not be read and unknown when the environments could not be read, in which case environments is empty and must be rendered as could-not-check, never as no environments.



## OpenAPI

````yaml https://platform.ankra.app/openapi.json get /api/v1/org/applications/{application_id}/autonomy
openapi: 3.1.0
info:
  title: FastAPI
  version: 0.1.0
servers:
  - url: https://platform.ankra.app
security: []
tags:
  - name: Organisation IAM
    description: >-
      Custom organisation roles and scoped role assignments for member and
      service-account identities.
  - name: Clusters
    description: Create, inspect and manage clusters, and the stacks deployed on them.
  - name: Managed Clusters
    description: Provider-managed control planes, driven through one common surface.
  - name: Imported Clusters
    description: Clusters that already existed and were connected to Ankra.
  - name: Cluster Access
    description: Kubeconfigs, service-account tokens and per-cluster access grants.
  - name: Kubernetes
    description: Read and act on the Kubernetes objects inside a cluster.
  - name: AWS Clusters
    description: >-
      Provision and manage self-managed k3s / kubeadm clusters on AWS EC2 in
      your own VPC.
  - name: Ankra Cloud Clusters
    description: >-
      Provision and manage self-managed kubeadm / k3s clusters on Ankra Cloud
      servers: a private network, a NAT router and a bastion per cluster.
  - name: DigitalOcean Clusters
    description: Provision and manage DigitalOcean Kubernetes clusters.
  - name: Hetzner Clusters
    description: Provision and manage Hetzner Kubernetes clusters.
  - name: OVH Clusters
    description: Provision and manage OVH Kubernetes clusters.
  - name: Scaleway Clusters
    description: Provision and manage Scaleway Kapsule clusters.
  - name: UpCloud Clusters
    description: Provision and manage UpCloud Kubernetes clusters.
  - name: Applications
    description: Deploy, configure and observe applications across the fleet.
  - name: Pipelines
    description: Pipeline definitions and the approval of the authority they declare.
  - name: Deploy Targets
    description: >-
      Environments, the hosts registered to receive deployments, and the
      releases deployed to them.
  - name: Backups
    description: >-
      Backup vaults, restore points, protection posture and captures for stacks
      and application deployments; a completed capture is not a verified
      restore.
  - name: Stack Profiles
    description: Reusable stack definitions, their versions and sharing.
  - name: Services
    description: >-
      Versioned service packages and explicit sharing. Runtime admission is
      separate from publication.
  - name: Charts
    description: Browse the chart catalogue behind stacks and addons.
  - name: Helm
    description: Helm registries, credentials and the charts they expose.
  - name: Executions
    description: Long-running platform executions and their jobs.
  - name: Operations
    description: Cancel in-flight cluster operations and their jobs.
  - name: Chat
    description: Conversational sessions, plans and confirmable actions.
  - name: AI Management
    description: >-
      Customer agent lifecycle, authenticated identity and organisation
      automation controls.
  - name: AI Agent Runs
    description: Autonomous agent runs and their outcomes.
  - name: AI Tickets
    description: The AI ticket board, its sync connections and settings.
  - name: AI Playbooks
    description: Reusable playbooks the AI lanes execute.
  - name: AI Conditions
    description: Conditions that gate AI autonomy.
  - name: AI Remediation
    description: >-
      The organisation's auto-remediation policy: what the AI lanes may fix by
      themselves, and who approves the rest.
  - name: AI Engineering Handoffs
    description: Work the AI lanes escalate to a human engineer.
  - name: AI Environment
    description: The environment and base stacks AI demos deploy into.
  - name: Security
    description: Findings, advisories, SBOMs, compliance and posture.
  - name: Cost
    description: Cluster and fleet cost, rate cards and cost settings.
  - name: Decisions
    description: >-
      The decision ledger behind the Security and Cost queues: proposals a
      surface computed, the approve and set-aside decisions people took on them,
      and the receipts of running them.
  - name: Billing
    description: Subscription and spend caps.
  - name: Organisation
    description: Members, invitations, audit logs and organisation settings.
  - name: Account Tokens
    description: Personal access tokens for the API and CLI.
  - name: Credentials
    description: The shared credential store.
  - name: AWS Credentials
    description: >-
      AWS credentials: access keys or CloudFormation-onboarded STS roles for
      cost, EKS and self-managed provisioning.
  - name: Ankra Cloud Credentials
    description: >-
      Ankra Cloud API tokens, shared by the self-managed and managed Ankra Cloud
      lanes.
  - name: Azure Credentials
    description: Azure credentials and SSH keys.
  - name: DigitalOcean Credentials
    description: DigitalOcean credentials and SSH keys.
  - name: Hetzner Credentials
    description: Hetzner credentials and SSH keys.
  - name: OVH Credentials
    description: OVH credentials and SSH keys.
  - name: Scaleway Credentials
    description: Scaleway credentials.
  - name: UpCloud Credentials
    description: UpCloud credentials and SSH keys.
  - name: Data Source Credentials
    description: Credentials for metrics and log sources.
  - name: DNS Credentials
    description: Credentials for DNS providers.
  - name: Object Storage Buckets
    description: >-
      Buckets Ankra creates and manages on an organisation's own provider
      credentials.
  - name: DNS
    description: DNS zones and records, including custom organisation zones.
  - name: Cloudflare
    description: Cloudflare domains and the credentials behind them.
  - name: Avura
    description: >-
      The linked Avura organization, the domains it shares with Ankra Platform,
      and their DNS records.
  - name: Variables
    description: Organisation- and cluster-scoped variables.
  - name: SOPS
    description: Encrypt and decrypt values with the organisation SOPS config.
  - name: Alerts
    description: Alert integrations and ingest credentials.
  - name: Notifications
    description: Notification routes and their delivery targets.
  - name: Support
    description: Support tickets.
  - name: AI Settings
    description: Organisation AI provider, model catalog and per-function model settings
paths:
  /api/v1/org/applications/{application_id}/autonomy:
    get:
      tags:
        - Applications
      summary: Get who runs each environment
      description: >-
        Who runs it: for each of the application's environments, the effective
        autonomy level (you_run_it, together, ankra_runs_it) in every area, the
        rule that decided it, and the limits. Until the autonomy policy has
        storage of its own, the organisation layer is seeded from existing
        settings (auto-remediation policy, Cost Autopilot tier, push-to-deploy)
        and seeded_from names which; read_state is partial when one of those
        could not be read and unknown when the environments could not be read,
        in which case environments is empty and must be rendered as
        could-not-check, never as no environments.
      operationId: get_application_autonomy_api_v1
      parameters:
        - in: path
          name: application_id
          required: true
          schema:
            type: string
            title: Application Id
      responses:
        '200':
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApplicationAutonomyResponse'
          description: Successful Response
        '404':
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/DemoDetailError'
          description: Not found ("Application not found")
components:
  schemas:
    ApplicationAutonomyResponse:
      type: object
      properties:
        application_id:
          type: string
          title: Application Id
        storage:
          type: string
          enum:
            - seeded
          title: Storage
          description: >-
            seeded: the levels are read from existing settings; the autonomy
            policy has no storage of its own yet.
        read_state:
          type: string
          enum:
            - ok
            - partial
            - unknown
          title: Read State
        read_reason:
          type: string
          title: Read Reason
        unread:
          type: array
          items:
            type: string
            enum:
              - auto_remediation_policy
              - cost_autopilot_tier
              - deploys_on_push
          title: Unread
        environments:
          type: array
          items:
            $ref: '#/components/schemas/ApplicationAutonomyEnvironment'
          title: Environments
      required:
        - application_id
        - storage
        - read_state
        - read_reason
        - unread
        - environments
      title: ApplicationAutonomyResponse
    DemoDetailError:
      description: >-
        The FastAPI-style detail envelope the demo routes use for
        400/403/404/409/502 responses.
      properties:
        detail:
          type: string
      required:
        - detail
      type: object
    ApplicationAutonomyEnvironment:
      type: object
      properties:
        environment_id:
          type: string
          title: Environment Id
        name:
          title: Name
          type: string
        role:
          type: string
          title: Role
        environment_kind:
          type: string
          enum:
            - production
            - staging
            - preview
            - playground
          title: Environment Kind
        level:
          type: string
          enum:
            - you_run_it
            - together
            - ankra_runs_it
          title: Level
        is_custom:
          type: boolean
          title: Is Custom
        areas:
          type: array
          items:
            $ref: '#/components/schemas/ApplicationAutonomyArea'
          title: Areas
        limits:
          $ref: '#/components/schemas/ApplicationAutonomyLimits'
      required:
        - environment_id
        - name
        - role
        - environment_kind
        - level
        - is_custom
        - areas
        - limits
      title: ApplicationAutonomyEnvironment
    ApplicationAutonomyArea:
      type: object
      properties:
        area:
          type: string
          enum:
            - keep_it_up
            - ship_changes
            - keep_it_safe
            - keep_costs_down
            - keep_it_current
            - fix_my_code
          title: Area
        level:
          type: string
          enum:
            - you_run_it
            - together
            - ankra_runs_it
          title: Level
        source:
          $ref: '#/components/schemas/AutonomyRuleSource'
        seeded_from:
          anyOf:
            - type: string
              enum:
                - auto_remediation_policy
                - cost_autopilot_tier
                - deploys_on_push
            - type: 'null'
          title: Seeded From
          description: >-
            The existing setting the organisation layer read this area from;
            null when another rule decided it.
      required:
        - area
        - level
        - source
        - seeded_from
      title: ApplicationAutonomyArea
    ApplicationAutonomyLimits:
      type: object
      properties:
        monthly_cost_increase_cents:
          $ref: '#/components/schemas/AutonomyIntegerLimit'
        production_downtime_seconds:
          $ref: '#/components/schemas/AutonomyIntegerLimit'
        non_production_downtime_seconds:
          $ref: '#/components/schemas/AutonomyIntegerLimit'
        may_change_data:
          $ref: '#/components/schemas/AutonomyBooleanLimit'
      required:
        - monthly_cost_increase_cents
        - production_downtime_seconds
        - non_production_downtime_seconds
        - may_change_data
      title: ApplicationAutonomyLimits
    AutonomyRuleSource:
      type: object
      properties:
        layer:
          type: string
          enum:
            - platform_default
            - organisation
            - app
            - environment
          title: Layer
        detail:
          type: string
          enum:
            - default
            - kind_level
            - layer_level
            - area
            - limit
          title: Detail
        widened_by_admin:
          type: boolean
          title: Widened By Admin
        clamped:
          type: boolean
          title: Clamped
        clamped_layer:
          type: string
          title: Clamped Layer
      required:
        - layer
        - detail
        - widened_by_admin
        - clamped
      title: AutonomyRuleSource
    AutonomyIntegerLimit:
      type: object
      properties:
        value:
          type: integer
          title: Value
        source:
          $ref: '#/components/schemas/AutonomyRuleSource'
      required:
        - value
        - source
      title: AutonomyIntegerLimit
    AutonomyBooleanLimit:
      type: object
      properties:
        value:
          type: boolean
          title: Value
        source:
          $ref: '#/components/schemas/AutonomyRuleSource'
      required:
        - value
        - source
      title: AutonomyBooleanLimit

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.