Skip to main content
GET
Error

Authorizations

Authorization
string
header
required

The control surface credential. Send Authorization: Bearer <token>.

Two kinds of token are accepted and they are told apart by shape, not by a separate header. A token beginning pbk_ is an org scoped API key, whose public half and secret half are generated together and of which only a hash of the secret is ever stored; anything else is treated as an OAuth 2.1 access token and verified against the authorization server's keys.

Both resolve to the same context: an org, a principal and a set of scopes. Nothing downstream branches on which channel you used, with one deliberate exception, key management, which requires a signed-in person so that a key can never mint another key.

Scopes are enforced when MCP tools are REGISTERED rather than when they are called, so a tool your credential cannot use is absent from tools/list rather than refused mid gesture.

Path Parameters

id
string
required

The thread id.

Query Parameters

limit
integer

How many messages, 1 to 200. Defaults to 50. Above the maximum is refused, never quietly reduced.

Required range: 1 <= x <= 200
before
string

A message id from a previous page's nextBefore: the page before that message. Omit it for the newest page.

files
enum<string>

inline (the default) carries screenshots as data: URLs within the byte budget; none leaves every one out.

Available options:
inline,
none

Response

The thread and one page of its messages.

thread
object
required
mode
enum<string> | null
required

This thread's saved automation mode, or null when none was chosen. Read it when reopening the chat on another browser.

Available options:
auto,
ask,
manual,
null
messages
object[]
required

Oldest first, newest last.

omittedFiles
integer
required

Inline screenshots left out of this page, by files=none or the byte budget.

Required range: x >= 0
nextBefore
string

The oldest message id on this page, to send as before for the page before it. Absent when this page reached the start.