> Call POST /v1/check before a tool that writes. DENY means do not invoke the tool. For clean Markdown of any page, append .md to the page URL. For the complete index, fetch https://docs.withwrit.com/llms.txt. # Get the tenant's manifest HMAC key GET https://api.withwrit.com/v1/manifest-key Returns the base64-encoded HMAC-SHA256 key used to sign CI attestation manifests. The key is issued once per tenant. Store it in CI as `WRIT_MANIFEST_KEY` and pass it to `writ scan --manifest-out`. Reference: https://docs.withwrit.com/api-reference/enforcement/get-the-tenants-manifest-hmac-key ## Servers - `https://api.withwrit.com` (Writ gate, default) - `https://j72ckh66ukck2kcbq3oiwxaalm0olxwb.lambda-url.us-east-1.on.aws` (Direct Lambda Function URL (fallback)) ## Response ### 200 Manifest key returned. - `manifestKey` (string, optional) ## Examples **Response** ```json { "manifestKey": "string" } ``` **SDK Code** ```python import requests url = "https://api.withwrit.com/v1/manifest-key" response = requests.get(url) print(response.json()) ``` ```javascript const url = 'https://api.withwrit.com/v1/manifest-key'; const options = {method: 'GET'}; try { const response = await fetch(url, options); const data = await response.json(); console.log(data); } catch (error) { console.error(error); } ``` ```go package main import ( "fmt" "net/http" "io" ) func main() { url := "https://api.withwrit.com/v1/manifest-key" req, _ := http.NewRequest("GET", url, nil) res, _ := http.DefaultClient.Do(req) defer res.Body.Close() body, _ := io.ReadAll(res.Body) fmt.Println(res) fmt.Println(string(body)) } ``` ```ruby require 'uri' require 'net/http' url = URI("https://api.withwrit.com/v1/manifest-key") http = Net::HTTP.new(url.host, url.port) http.use_ssl = true request = Net::HTTP::Get.new(url) response = http.request(request) puts response.read_body ``` ```java import com.mashape.unirest.http.HttpResponse; import com.mashape.unirest.http.Unirest; HttpResponse response = Unirest.get("https://api.withwrit.com/v1/manifest-key") .asString(); ``` ```php request('GET', 'https://api.withwrit.com/v1/manifest-key'); echo $response->getBody(); ``` ```csharp using RestSharp; var client = new RestClient("https://api.withwrit.com/v1/manifest-key"); var request = new RestRequest(Method.GET); IRestResponse response = client.Execute(request); ``` ```swift import Foundation let request = NSMutableURLRequest(url: NSURL(string: "https://api.withwrit.com/v1/manifest-key")! as URL, cachePolicy: .useProtocolCachePolicy, timeoutInterval: 10.0) request.httpMethod = "GET" let session = URLSession.shared let dataTask = session.dataTask(with: request as URLRequest, completionHandler: { (data, response, error) -> Void in if (error != nil) { print(error as Any) } else { let httpResponse = response as? HTTPURLResponse print(httpResponse) } }) dataTask.resume() ```