LangSmith 的 API 支持通过 API 密钥以编程方式访问 UI 中提供的所有操作,仅有少数例外,请参阅 仅限用户的端点.
以下是一些常用端点和用例。有关可用端点的完整列表,请参阅 API 文档. ** X-Organization-Id header 应出现在所有请求中,并且 X-Tenant-Id header 应出现在针对特定工作区的请求中。**
工作区
用户管理
RBAC
成员资格管理
List roles 在 RBAC 端点(如下)响应应用于获取这些操作的角色 ID。 List [organization|workspace] members 端点(如下)响应 "id"应用作 identity_id 在这些操作中。
组织级别:
- * 列出活动的组织成员
- * 列出待处理的组织成员
- * 邀请用户加入组织和一个或多个工作区。当用户还不是组织成员时应使用此操作。
- * 更新用户的组织角色
- * 从组织中移除某人
工作区级别:
- * 列出工作区成员
- * 将成员添加到已属于组织的工作区
- * 更新用户的工作区角色
- * 从工作区中移除某人
API 密钥
安全设置
您可以在以下位置更新这些设置 **设置 > 共享** 工作区的标签页,或通过 API: * 更新组织共享设置 * 使用 unshare_all 取消共享 **ALL** 取消共享所选工作区的共享资源 - 使用 disable_public_sharing 阻止将来共享资源
这些设置只能通过 API 编辑: * Disable/enable PAT creation (对于自托管,在 Helm chart 版本 0.11.25+ 中可用) * 使用 pat_creation_disabled 禁用整个组织的 PAT 创建。 * 请参阅 管理员指南 了解关于无法创建 PAT 的组织查看者角色的信息。 * 对于自托管部署,您还可以 全局禁用 PAT 创建 跨所有组织使用环境变量。
仅用户端点
这些端点仅限用户范围,需要已登录用户的 JWT,因此只能通过 UI 执行。
- *
/api-key/current端点:这些与用户的 PAT 相关 - *
/sso/email-verification/send(仅限云端):此端点与 SAML SSO
示例代码
下面的示例代码介绍了与组织管理相关的一些常见工作流程。请务必在代码中需要替换的地方进行必要的替换 <replace_me> 代码中
def main():
api_key = os.environ["LANGSMITH_API_KEY"]
# LANGSMITH_ORGANIZATION_ID is not a standard environment variable in the SDK, just used for this example
organization_id = os.environ["LANGSMITH_ORGANIZATION_ID"]
base_url = os.environ.get("LANGSMITH_ENDPOINT") # or "https://api.smith.langchain.com". Update appropriately for self-hosted installations or regional SaaS
headers = {
"Content-Type": "application/json",
"X-API-Key": api_key,
"X-Organization-Id": organization_id,
}
session = requests.Session()
session.headers.update(headers)
workspaces_path = f"{base_url}/api/v1/workspaces"
orgs_path = f"{base_url}/api/v1/orgs/current"
api_keys_path = f"{base_url}/api/v1/api-key"
# Create a workspace
workspace_res = session.post(workspaces_path, json={"display_name": "My Workspace"})
workspace_res.raise_for_status()
workspace = workspace_res.json()
workspace_id = workspace["id"]
new_workspace_headers = {
"X-Tenant-Id": workspace_id,
}
# Grab roles - this includes both organization and workspace roles
roles_res = session.get(f"{orgs_path}/roles")
roles_res.raise_for_status()
roles = roles_res.json()
# system org roles are 'Organization Admin', 'Organization User'
# system workspace roles are 'Admin', 'Editor', 'Viewer'
org_roles_by_name = {role["display_name"]: role for role in roles if role["access_scope"] == "organization"}
ws_roles_by_name = {role["display_name"]: role for role in roles if role["access_scope"] == "workspace"}
# Invite a user to the org and the new workspace, as an Editor.
# workspace_role_id is only allowed if RBAC is enabled (an enterprise feature).
new_user_email = "<replace_me>"
new_user_res = session.post(
f"{orgs_path}/members",
json={
"email": new_user_email,
"role_id": org_roles_by_name["Organization User"]["id"],
"workspace_ids": [workspace_id],
"workspace_role_id": ws_roles_by_name["Editor"]["id"],
},
)
new_user_res.raise_for_status()
# Add a user that already exists in the org to the new workspace, as a Viewer.
# workspace_role_id is only allowed if RBAC is enabled (an enterprise feature).
existing_user_email = "<replace_me>"
org_members_res = session.get(f"{orgs_path}/members")
org_members_res.raise_for_status()
org_members = org_members_res.json()
existing_org_member = next(
(member for member in org_members["members"] if member["email"] == existing_user_email), None
)
existing_user_res = session.post(
f"{workspaces_path}/current/members",
json={
"user_id": existing_org_member["user_id"],
"workspace_ids": [workspace_id],
"workspace_role_id": ws_roles_by_name["Viewer"]["id"],
},
headers=new_workspace_headers,
)
existing_user_res.raise_for_status()
# List all members of the workspace
members_res = session.get(f"{workspaces_path}/current/members", headers=new_workspace_headers)
members_res.raise_for_status()
members = members_res.json()
workspace_member = next(
(member for member in members["members"] if member["email"] == existing_user_email), None
)
# Update the user's workspace role to Admin (enterprise-only)
existing_user_id = workspace_member["id"]
update_res = session.patch(
f"{workspaces_path}/current/members/{existing_user_id}",
json={"role_id": ws_roles_by_name["Admin"]["id"]},
headers=new_workspace_headers,
)
update_res.raise_for_status()
# Update the user's organization role to Organization Admin
update_res = session.patch(
f"{orgs_path}/members/{existing_org_member['id']}",
json={"role_id": org_roles_by_name["Organization Admin"]["id"]},
)
update_res.raise_for_status()
# Create a new Service key
api_key_res = session.post(
api_keys_path,
json={"description": "my key"},
headers=new_workspace_headers,
)
api_key_res.raise_for_status()
api_key_json = api_key_res.json()
api_key = api_key_json["key"]
if __name__ == "__main__":
main()