You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: versions/3.1.1.md
+5-5Lines changed: 5 additions & 5 deletions
Original file line number
Diff line number
Diff line change
@@ -314,21 +314,21 @@ This is the root object of the [OpenAPI document](#openapi-description).
314
314
| <aname="oas-paths"></a>paths |[Paths Object](#paths-object)| The available paths and operations for the API. |
315
315
| <aname="oas-webhooks"></a>webhooks | Map[`string`, [Path Item Object](#path-item-object)]| The incoming webhooks that MAY be received as part of this API and that the API consumer MAY choose to implement. Closely related to the `callbacks` feature, this section describes requests initiated other than by an API call, for example by an out of band registration. The key name is a unique string to refer to each webhook, while the (optionally referenced) Path Item Object describes a request that may be initiated by the API provider and the expected responses. An [example](../examples/v3.1/webhook-example.yaml) is available. |
316
316
| <aname="oas-components"></a>components |[Components Object](#components-object)| An element to hold various schemas for the document. |
317
-
| <aname="oas-security"></a>security | [[Security Requirement Object](#security-requirement-object)] | See [the`security`field](#oas-security-field).
317
+
| <aname="oas-security"></a>security | [[Security Requirement Object](#security-requirement-object)] | A declaration of which security mechanisms can be used across the API. See [The`security`Field](#the-security-field).
318
318
| <aname="oas-tags"></a>tags |[[Tag Object](#tag-object)]| A list of tags used by the document with additional metadata. The order of the tags can be used to reflect on their order by the parsing tools. Not all tags that are used by the [Operation Object](#operation-object) must be declared. The tags that are not declared MAY be organized randomly or based on the tools' logic. Each tag name in the list MUST be unique. |
The `security` field describes how requests are authorized:
326
326
327
327
- If omitted, then nothing can be inferred about the authorization requirements; the behaviour is implementation-defined.
328
328
- If present but empty (`security: []`), then the behaviour is undefined.
329
-
- Otherwise, it is an array of Security Requirement Objects, only one of which needs to be satisfied for the request to be authorized.
329
+
- Otherwise, it is an array of [Security Requirement Objects](#security-requirement-object), only one of which needs to be satisfied for the request to be authorized.
330
330
331
-
Because the empty [Security Requirement Object](#security-requirement-object)`{}` will always be satisfied, any `security` list that includes `{}` will allow all requests. In particular, `security: [{}]` means that no security schemes are in use (also known as "no security").
331
+
Because the empty Security Requirement Object `{}` will always be satisfied, any `security` list that includes `{}` will allow all requests. In particular, `security: [{}]` means that no security schemes are in use (also known as "no security").
332
332
333
333
Individual Operations can [override this field](#operation-security).
334
334
@@ -979,7 +979,7 @@ Describes a single API operation on a path.
979
979
| <a name="operation-responses"></a>responses | [Responses Object](#responses-object) | The list of possible responses as they are returned from executing this operation. |
980
980
| <a name="operation-callbacks"></a>callbacks | Map[`string`, [Callback Object](#callback-object) \| [Reference Object](#reference-object)] | A map of possible out-of band callbacks related to the parent operation. The key is a unique identifier for the Callback Object. Each value in the map is a [Callback Object](#callback-object) that describes a request that may be initiated by the API provider and the expected responses. |
981
981
| <a name="operation-deprecated"></a>deprecated | `boolean` | Declares this operation to be deprecated. Consumers SHOULD refrain from usage of the declared operation. Default value is `false`. |
982
-
| <a name="operation-security"></a>security | [[Security Requirement Object](#security-requirement-object)] | If present, then this overrides any [top-level `security` field](#oas-security) for this operation. See the definition of that field for details.
982
+
| <a name="operation-security"></a>security | [[Security Requirement Object](#security-requirement-object)] | A declaration of which security mechanisms can be used for this operation. If present, then this overrides any [top-level `security` field](#oas-security) for this operation. See the [definition of that field](#the-security-field) for details.
983
983
| <a name="operation-servers"></a>servers | [[Server Object](#server-object)] | An alternative `server` array to service this operation. If an alternative `server` object is specified at the Path Item Object or Root level, it will be overridden by this value. |
984
984
985
985
This object MAY be extended with [Specification Extensions](#specification-extensions).
0 commit comments