# Are encrypted node-red Credentials in the HTTP Request Body for /flows only allowed for API Version v2?

**URL:** <https://discourse.nodered.org/t/are-encrypted-node-red-credentials-in-the-http-request-body-for-flows-only-allowed-for-api-version-v2/80292>\
**Category:** General\
**Created:** [3 August 2023 13:25 UTC](https://discourse.nodered.org/t/are-encrypted-node-red-credentials-in-the-http-request-body-for-flows-only-allowed-for-api-version-v2/80292 "2023-08-03T13:25:05Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![Shan](https://avatars.discourse-cdn.com/v4/letter/s/7ab992/32.png) [@Shan](https://discourse.nodered.org/u/Shan)\
**Post date:** [3 August 2023 13:25 UTC](https://discourse.nodered.org/t/are-encrypted-node-red-credentials-in-the-http-request-body-for-flows-only-allowed-for-api-version-v2/80292/1 "2023-08-03T13:25:05Z")

</div>

According to the documentation from [POST /flows : Node-RED](https://nodered.org/docs/api/admin/methods/post/flows/)

For encrypted credentials the document specifies adding the values from `flows_cred.json` under a key called `credentials` but the structure only seems to documented for `Node-RED-API-version: v2`.

There is a difference in the structure for Request Body for API version v1 (which is a list of objects) and v2 which is an object.

I would like a clarification if the `credentials` object can also be added to the v1 Request Body's list and whether I can append it to the list

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex026/uploads/nodered/original/1X/d073cd938eafa2e558d7c2cd59003b3ef4963033.png) [@system](https://discourse.nodered.org/u/system)\
**Post date:** [2 October 2023 13:25 UTC](https://discourse.nodered.org/t/are-encrypted-node-red-credentials-in-the-http-request-body-for-flows-only-allowed-for-api-version-v2/80292/2 "2023-10-02T13:25:15Z")

</div>

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.
