All Products
Search
Document Center

Identity as a Service:ListApplications

Last Updated:Mar 31, 2026

Gets a paginated list of EIAM applications.

Try it now

Try this API in OpenAPI Explorer, no manual signing needed. Successful calls auto-generate SDK code matching your parameters. Download it with built-in credential security for local usage.

Test

RAM authorization

The table below describes the authorization required to call this API. You can define it in a Resource Access Management (RAM) policy. The table's columns are detailed below:

  • Action: The actions can be used in the Action element of RAM permission policy statements to grant permissions to perform the operation.

  • API: The API that you can call to perform the action.

  • Access level: The predefined level of access granted for each API. Valid values: create, list, get, update, and delete.

  • Resource type: The type of the resource that supports authorization to perform the action. It indicates if the action supports resource-level permission. The specified resource must be compatible with the action. Otherwise, the policy will be ineffective.

    • For APIs with resource-level permissions, required resource types are marked with an asterisk (*). Specify the corresponding Alibaba Cloud Resource Name (ARN) in the Resource element of the policy.

    • For APIs without resource-level permissions, it is shown as All Resources. Use an asterisk (*) in the Resource element of the policy.

  • Condition key: The condition keys defined by the service. The key allows for granular control, applying to either actions alone or actions associated with specific resources. In addition to service-specific condition keys, Alibaba Cloud provides a set of common condition keys applicable across all RAM-supported services.

  • Dependent action: The dependent actions required to run the action. To complete the action, the RAM user or the RAM role must have the permissions to perform all dependent actions.

Action

Access level

Resource type

Condition key

Dependent action

eiam:ListApplications

list

*Application

acs:eiam:{#regionId}:{#accountId}:instance/{#InstanceId}/application/*

None None

Request parameters

Parameter

Type

Required

Description

Example

InstanceId

string

Yes

The instance ID.

idaas_ue2jvisn35ea5lmthk267xxxxx

PageNumber

integer

No

The page number.

1

PageSize

integer

No

The number of entries per page.

20

ApplicationIds

array

No

An array of application IDs.

Ram Account SSO

string

No

The application ID.

app_mkv7rgt4d7i4u7zqtzev2mxxxx

ApplicationName

string

No

The application name. This parameter supports only prefix matching.

Ram Account SSO

AuthorizationType

string

No

The authorization type for accessing the application. Valid values:

  • authorize_required: Explicit authorization is required.

  • default_all: All members have access by default.

Valid values:

  • authorize_required :

    Explicit authorization is required.

  • default_all :

    All members have access by default.

authorize_required

Status

string

No

The status of the application. Valid values:

  • enabled: The application is enabled.

  • disabled: The application is disabled.

Valid values:

  • disabled :

    Disabled

  • enabled :

    Enabled

enabled

M2MClientStatus

string

No

Specifies whether the machine-to-machine (M2M) client identity is enabled for the application.

enabled

ResourceServerStatus

string

No

Specifies whether the resource server capability is enabled for the application.

enabled

SsoType

string

No

The SSO type to filter by. You can specify multiple types by separating them with commas. Example: oauth2/m2m,oidc+oauth2/m2m.

Valid values:

  • oauth2/m2m :

    oauth2/m2m

  • saml2 :

    saml2

  • oidc :

    oidc

  • oidc+oauth2/m2m :

    oidc+oauth2/m2m

oauth2/m2m

ApplicationCreationType

string

No

The creation type of the application. If you leave this parameter empty, user-created applications are queried by default. To query applications of all creation types, set this parameter to all.

Valid values:

  • system_init :

    System-created

  • user_custom :

    User-created

system_init

ApplicationIdentityType

string

No

The identity type of the application. If you leave this parameter empty, identities of the application type are queried by default. To query identities of all types, set this parameter to all.

Valid values:

  • all :

    all

  • agent :

    agent

  • application :

    application

application

Response elements

Element

Type

Description

Example

object

RequestId

string

The request ID.

0441BD79-92F3-53AA-8657-F8CE4A2B912A

TotalCount

integer

The total number of entries.

100

Applications

array<object>

The list of applications.

object

The application details.

InstanceId

string

The instance ID.

idaas_ue2jvisn35ea5lmthk267xxxxx

ApplicationId

string

The application ID.

app_mkv7rgt4d7i4u7zqtzev2mxxxx

ClientId

string

The client ID of the application.

app_mkv7rgt4d7i4u7zqtzev2mxxxx

LogoUrl

string

The logo URL of the application.

https://img.alicdn.com/imgextra/i4/O1CN01lvYwpv1aGowQXDML9_!!6000000003303-0-tps-580-580.jpg

ApplicationName

string

The application name.

SAML Application

Description

string

The application description.

A test application

SsoType

string

The single sign-on (SSO) protocol. Valid values:

  • saml2: SAML 2.0.

  • oidc: OpenID Connect (OIDC).

  • oauth2/m2m: OAuth 2.0.

  • oidc+oauth2/m2m: OIDC and OAuth 2.0.

saml2

ApplicationSourceType

string

The method that was used to create the application. Valid values:

  • urn:alibaba:idaas:app:source:template: The application was created from a template.

  • urn:alibaba:idaas:app:source:standard: The application was created based on a standard protocol.

urn:alibaba:idaas:app:source:standard

Features

string

The features that the application supports. The value is a JSON array that is returned as a string. Valid values:

  • sso: single sign-on (SSO).

  • slo: single log-out (SLO).

  • provision: account synchronization.

  • api_invoke: API calling.

  • m2m_client: M2M client.

  • resource_server: API service.

  • other: a fallback value.

["sso", "provision"]

Status

string

The application status. Valid values:

  • enabled: The application is enabled.

  • disabled: The application is disabled.

  • deleted: The application is soft deleted.

enabled

CreateTime

integer

The time when the application was created. This value is a UNIX timestamp. Unit: milliseconds.

1649830226000

UpdateTime

integer

The last time when the application was updated. This value is a UNIX timestamp. Unit: milliseconds.

1649830226000

ServiceManaged

boolean

Indicates whether the application is managed by a cloud service.

true

ManagedServiceCode

string

The service code of the cloud service that manages the application.

rpa

ApplicationTemplateId

string

The application template ID.

apt_xxx_xxx

ApplicationCreationType

string

The application creation type.

Valid values:

  • system_init :

    The application was created by the system.

  • user_custom :

    The application was created by a user.

user_custom

ResourceServerStatus

string

The resource server status.

enabled

ResourceServerIdentifier

string

The unique identifier of the resource server.

https://example.com

ResourceServerSourceType

string

The source type of the resource server.

Valid values:

  • urn:cloud:idaas:resourceserver:source:custom :

    Custom

  • urn:cloud:idaas:resourceserver:source:system :

    System

urn:cloud:idaas:resourceserver:source:custom

ApplicationIdentityType

string

The application identity type.

Valid values:

  • agent :

    Agent

  • application :

    Application

application

Examples

Success response

JSON format

{
  "RequestId": "0441BD79-92F3-53AA-8657-F8CE4A2B912A",
  "TotalCount": 100,
  "Applications": [
    {
      "InstanceId": "idaas_ue2jvisn35ea5lmthk267xxxxx",
      "ApplicationId": "app_mkv7rgt4d7i4u7zqtzev2mxxxx",
      "ClientId": "app_mkv7rgt4d7i4u7zqtzev2mxxxx",
      "LogoUrl": "https://img.alicdn.com/imgextra/i4/O1CN01lvYwpv1aGowQXDML9_!!6000000003303-0-tps-580-580.jpg",
      "ApplicationName": "SAML Application",
      "Description": "A test application",
      "SsoType": "saml2",
      "ApplicationSourceType": "urn:alibaba:idaas:app:source:standard",
      "Features": "[\"sso\", \"provision\"]",
      "Status": "enabled",
      "CreateTime": 1649830226000,
      "UpdateTime": 1649830226000,
      "ServiceManaged": true,
      "ManagedServiceCode": "rpa",
      "ApplicationTemplateId": "apt_xxx_xxx",
      "ApplicationCreationType": "user_custom",
      "ResourceServerStatus": "enabled",
      "ResourceServerIdentifier": "https://example.com",
      "ResourceServerSourceType": "urn:cloud:idaas:resourceserver:source:custom",
      "ApplicationIdentityType": "application"
    }
  ]
}

Error codes

See Error Codes for a complete list.

Release notes

See Release Notes for a complete list.