Skip to main content

Ovok platform resource types

The inspected sandbox schema includes these 16 non-FHIR platform types in addition to the 146 FHIR R4 resources. Their presence in introspection describes the schema; it does not make them application data models or grant access. Use FHIR resources for clinical data, and use the Console and linked platform references for project configuration and account workflows.

For each type, the table lists the read-by-ID field, list field, connection field, resource-specific list arguments, and available CRUD mutations. Shared list arguments are documented in queries and pagination.

Ovok typeRead, list, connection fieldsResource-specific list argumentsMutations
AccessPolicyAccessPolicy(id: ID!)
AccessPolicyList
AccessPolicyConnection
nameAccessPolicyCreate
AccessPolicyUpdate
AccessPolicyPatch
AccessPolicyDelete
AgentAgent(id: ID!)
AgentList
AgentConnection
identifier, name, statusAgentCreate
AgentUpdate
AgentPatch
AgentDelete
AsyncJobAsyncJob(id: ID!)
AsyncJobList
AsyncJobConnection
type, statusAsyncJobCreate
AsyncJobUpdate
AsyncJobPatch
AsyncJobDelete
BotBot(id: ID!)
BotList
BotConnection
identifier, name, category, cds_hookBotCreate
BotUpdate
BotPatch
BotDelete
BulkDataExportBulkDataExport(id: ID!)
BulkDataExportList
BulkDataExportConnection
statusBulkDataExportCreate
BulkDataExportUpdate
BulkDataExportPatch
BulkDataExportDelete
ClientApplicationClientApplication(id: ID!)
ClientApplicationList
ClientApplicationConnection
nameClientApplicationCreate
ClientApplicationUpdate
ClientApplicationPatch
ClientApplicationDelete
DomainConfigurationDomainConfiguration(id: ID!)
DomainConfigurationList
DomainConfigurationConnection
domainDomainConfigurationCreate
DomainConfigurationUpdate
DomainConfigurationPatch
DomainConfigurationDelete
JsonWebKeyJsonWebKey(id: ID!)
JsonWebKeyList
JsonWebKeyConnection
activeJsonWebKeyCreate
JsonWebKeyUpdate
JsonWebKeyPatch
JsonWebKeyDelete
LoginLogin(id: ID!)
LoginList
LoginConnection
user, code, cookieLoginCreate
LoginUpdate
LoginPatch
LoginDelete
ProjectProject(id: ID!)
ProjectList
ProjectConnection
identifier, name, owner, google_client_id, recaptcha_site_keyProjectCreate
ProjectUpdate
ProjectPatch
ProjectDelete
ProjectMembershipProjectMembership(id: ID!)
ProjectMembershipList
ProjectMembershipConnection
project, user, profile, profile_type, user_name, external_id, access_policy, identifier, activeProjectMembershipCreate
ProjectMembershipUpdate
ProjectMembershipPatch
ProjectMembershipDelete
SmartAppLaunchSmartAppLaunch(id: ID!)
SmartAppLaunchList
SmartAppLaunchConnection
—SmartAppLaunchCreate
SmartAppLaunchUpdate
SmartAppLaunchPatch
SmartAppLaunchDelete
SubscriptionStatusSubscriptionStatus(id: ID!)
SubscriptionStatusList
SubscriptionStatusConnection
—SubscriptionStatusCreate
SubscriptionStatusUpdate
SubscriptionStatusPatch
SubscriptionStatusDelete
UserUser(id: ID!)
UserList
UserConnection
identifier, email, external_id, projectUserCreate
UserUpdate
UserPatch
UserDelete
UserConfigurationUserConfiguration(id: ID!)
UserConfigurationList
UserConfigurationConnection
nameUserConfigurationCreate
UserConfigurationUpdate
UserConfigurationPatch
UserConfigurationDelete
UserSecurityRequestUserSecurityRequest(id: ID!)
UserSecurityRequestList
UserSecurityRequestConnection
userUserSecurityRequestCreate
UserSecurityRequestUpdate
UserSecurityRequestPatch
UserSecurityRequestDelete

Security-sensitive fields​

Some platform object types can contain authentication, credential, key, or user-security data. Introspection reveals field names, not authorization. Do not select, return, or log secrets, password material, MFA data, tokens, or private key material from a general application. Use the documented Authentication, Access policies, and Settings and features flows instead.