from mlflow.server.handlers import _add_static_prefix, _get_ajax_path, _get_rest_path HOME = "/" SIGNUP = "/signup" CREATE_USER = _get_rest_path("/mlflow/users/create") AJAX_CREATE_USER = _get_ajax_path("/mlflow/users/create") CREATE_USER_UI = _get_rest_path("/mlflow/users/create-ui") GET_USER = _get_rest_path("/mlflow/users/get") AJAX_GET_USER = _get_ajax_path("/mlflow/users/get") GET_CURRENT_USER = _get_rest_path("/mlflow/users/current") AJAX_GET_CURRENT_USER = _get_ajax_path("/mlflow/users/current") LIST_CURRENT_USER_PERMISSIONS = _get_rest_path("/mlflow/users/current/permissions", version=3) AJAX_LIST_CURRENT_USER_PERMISSIONS = _get_ajax_path("/mlflow/users/current/permissions", version=3) LIST_USER_PERMISSIONS = _get_rest_path("/mlflow/users/permissions/list", version=3) AJAX_LIST_USER_PERMISSIONS = _get_ajax_path("/mlflow/users/permissions/list", version=3) # Unified per-user grant convenience APIs. ``grant`` / ``revoke`` write to the # user's synthetic ``__user___`` role in the active workspace; ``check`` # resolves the user's effective permission on the resource the same way the # runtime authorization check does, so callers see exactly what a real request # would see. GRANT_USER_PERMISSION = _get_rest_path("/mlflow/users/permissions/grant", version=3) AJAX_GRANT_USER_PERMISSION = _get_ajax_path("/mlflow/users/permissions/grant", version=3) REVOKE_USER_PERMISSION = _get_rest_path("/mlflow/users/permissions/revoke", version=3) AJAX_REVOKE_USER_PERMISSION = _get_ajax_path("/mlflow/users/permissions/revoke", version=3) GET_USER_PERMISSION = _get_rest_path("/mlflow/users/permissions/get", version=3) AJAX_GET_USER_PERMISSION = _get_ajax_path("/mlflow/users/permissions/get", version=3) UPDATE_USER_PASSWORD = _get_rest_path("/mlflow/users/update-password") AJAX_UPDATE_USER_PASSWORD = _get_ajax_path("/mlflow/users/update-password") UPDATE_USER_ADMIN = _get_rest_path("/mlflow/users/update-admin") AJAX_UPDATE_USER_ADMIN = _get_ajax_path("/mlflow/users/update-admin") DELETE_USER = _get_rest_path("/mlflow/users/delete") AJAX_DELETE_USER = _get_ajax_path("/mlflow/users/delete") LIST_USERS = _get_rest_path("/mlflow/users/list") AJAX_LIST_USERS = _get_ajax_path("/mlflow/users/list") # Flask routes (not part of Protobuf API) GET_ARTIFACT = _add_static_prefix("/get-artifact") UPLOAD_ARTIFACT = _get_ajax_path("/mlflow/upload-artifact") GET_MODEL_VERSION_ARTIFACT = _add_static_prefix("/model-versions/get-artifact") GET_TRACE_ARTIFACT = _get_ajax_path("/mlflow/get-trace-artifact") GET_TRACE_ARTIFACT_V3 = _get_ajax_path("/mlflow/get-trace-artifact", version=3) GET_METRIC_HISTORY_BULK = _get_ajax_path("/mlflow/metrics/get-history-bulk") GET_METRIC_HISTORY_BULK_INTERVAL = _get_ajax_path("/mlflow/metrics/get-history-bulk-interval") SEARCH_DATASETS = _get_ajax_path("/mlflow/experiments/search-datasets") CREATE_PROMPTLAB_RUN = _get_ajax_path("/mlflow/runs/create-promptlab-run") GATEWAY_PROXY = _get_ajax_path("/mlflow/gateway-proxy") # Role management routes (RBAC). Each route is exposed at both the `/api/` path (for # the Python client) and the `/ajax-api/` path (for the MLflow frontend), following the # same convention as LIST_USERS / AJAX_LIST_USERS and handlers._get_paths. CREATE_ROLE = _get_rest_path("/mlflow/roles/create", version=3) AJAX_CREATE_ROLE = _get_ajax_path("/mlflow/roles/create", version=3) GET_ROLE = _get_rest_path("/mlflow/roles/get", version=3) AJAX_GET_ROLE = _get_ajax_path("/mlflow/roles/get", version=3) LIST_ROLES = _get_rest_path("/mlflow/roles/list", version=3) AJAX_LIST_ROLES = _get_ajax_path("/mlflow/roles/list", version=3) UPDATE_ROLE = _get_rest_path("/mlflow/roles/update", version=3) AJAX_UPDATE_ROLE = _get_ajax_path("/mlflow/roles/update", version=3) DELETE_ROLE = _get_rest_path("/mlflow/roles/delete", version=3) AJAX_DELETE_ROLE = _get_ajax_path("/mlflow/roles/delete", version=3) ADD_ROLE_PERMISSION = _get_rest_path("/mlflow/roles/permissions/add", version=3) AJAX_ADD_ROLE_PERMISSION = _get_ajax_path("/mlflow/roles/permissions/add", version=3) REMOVE_ROLE_PERMISSION = _get_rest_path("/mlflow/roles/permissions/remove", version=3) AJAX_REMOVE_ROLE_PERMISSION = _get_ajax_path("/mlflow/roles/permissions/remove", version=3) LIST_ROLE_PERMISSIONS = _get_rest_path("/mlflow/roles/permissions/list", version=3) AJAX_LIST_ROLE_PERMISSIONS = _get_ajax_path("/mlflow/roles/permissions/list", version=3) UPDATE_ROLE_PERMISSION = _get_rest_path("/mlflow/roles/permissions/update", version=3) AJAX_UPDATE_ROLE_PERMISSION = _get_ajax_path("/mlflow/roles/permissions/update", version=3) ASSIGN_ROLE = _get_rest_path("/mlflow/roles/assign", version=3) AJAX_ASSIGN_ROLE = _get_ajax_path("/mlflow/roles/assign", version=3) UNASSIGN_ROLE = _get_rest_path("/mlflow/roles/unassign", version=3) AJAX_UNASSIGN_ROLE = _get_ajax_path("/mlflow/roles/unassign", version=3) LIST_USER_ROLES = _get_rest_path("/mlflow/users/roles/list", version=3) AJAX_LIST_USER_ROLES = _get_ajax_path("/mlflow/users/roles/list", version=3) LIST_ROLE_USERS = _get_rest_path("/mlflow/roles/users/list", version=3) AJAX_LIST_ROLE_USERS = _get_ajax_path("/mlflow/roles/users/list", version=3) # Gateway AJAX-only routes GATEWAY_SUPPORTED_PROVIDERS = _get_ajax_path("/mlflow/gateway/supported-providers", version=3) GATEWAY_SUPPORTED_MODELS = _get_ajax_path("/mlflow/gateway/supported-models", version=3) GATEWAY_PROVIDER_CONFIG = _get_ajax_path("/mlflow/gateway/provider-config", version=3) GATEWAY_SECRETS_CONFIG = _get_ajax_path("/mlflow/gateway/secrets/config", version=3) INVOKE_SCORER = _get_ajax_path("/mlflow/scorer/invoke", version=3)