> ## Documentation Index
> Fetch the complete documentation index at: https://evalgate.com/docs/llms.txt
> Use this file to discover all available pages before exploring further.

# Create red team campaigns

> Requires scopes: red_team:run



## OpenAPI

````yaml /api-reference/openapi.json post /api/red-team/campaigns
openapi: 3.1.0
info:
  title: EvalGate API
  version: 3.7.6
  description: EvalGate API. See docs/api-contract.md for stability commitments.
servers:
  - url: https://evalgate.com
    description: Production
  - url: http://localhost:3000
    description: Local
security: []
paths:
  /api/red-team/campaigns:
    post:
      tags:
        - red team
      summary: Create red team campaigns
      description: 'Requires scopes: red_team:run'
      operationId: post_red_team_campaigns
      requestBody:
        required: true
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/PostApiRedTeamCampaignsRequest'
      responses:
        '200':
          description: Successful response
          content:
            application/json:
              schema:
                $ref: >-
                  #/components/schemas/PostApiRedTeamCampaignsResponse200ApplicationJson
        '201':
          description: Successful response
          content:
            application/json:
              schema:
                $ref: >-
                  #/components/schemas/PostApiRedTeamCampaignsResponse201ApplicationJson
        '400':
          $ref: '#/components/responses/ValidationError'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '409':
          $ref: '#/components/responses/Conflict'
        '429':
          $ref: '#/components/responses/RateLimited'
        '500':
          $ref: '#/components/responses/InternalError'
      security:
        - bearerAuth:
            - red_team:run
components:
  schemas:
    PostApiRedTeamCampaignsRequest:
      type: object
      properties:
        name:
          type: string
        idempotencyKey:
          type: string
        target:
          type: object
          properties:
            type:
              oneOf:
                - type: string
                  enum:
                    - prompt
                - type: string
                  enum:
                    - scorer
                - type: string
                  enum:
                    - workflow
                - type: string
                  enum:
                    - deployment
                - type: string
                  enum:
                    - tool
            artifactId:
              type: number
            versionId:
              type: number
            contentHash:
              type: string
            environment:
              type: string
          additionalProperties: false
          required:
            - type
            - artifactId
            - versionId
            - contentHash
        seed:
          type: number
        variants:
          type: array
          items:
            type: object
            properties:
              provider:
                type: string
              model:
                type: string
              key:
                type: string
              routingProfileId:
                type: string
              parameters:
                type: object
                additionalProperties:
                  $ref: '#/components/schemas/JsonValue'
            additionalProperties: false
            required:
              - provider
              - model
              - key
        budget:
          type: object
          properties:
            maxCostUsd:
              type: number
            maxModelCalls:
              type: number
            concurrency:
              type: number
          additionalProperties: false
          required:
            - maxCostUsd
            - maxModelCalls
            - concurrency
        scorers:
          type: array
          items:
            type: object
            properties:
              artifactId:
                type: number
              versionId:
                type: number
              contentHash:
                type: string
              required:
                oneOf:
                  - type: boolean
                    enum:
                      - false
                  - type: boolean
                    enum:
                      - true
            additionalProperties: false
            required:
              - artifactId
              - versionId
              - contentHash
        riskPackVersionIds:
          type: array
          items:
            type: string
        description:
          type: string
        datasetVersionId:
          type: string
        ownerId:
          type: string
        createdFromRunId:
          type: string
      additionalProperties: false
      required:
        - name
        - idempotencyKey
        - target
        - seed
        - variants
        - budget
        - scorers
        - riskPackVersionIds
    PostApiRedTeamCampaignsResponse200ApplicationJson:
      type: object
      properties:
        campaign:
          type: object
          properties:
            id:
              type: string
            organizationId:
              $ref: '#/components/schemas/OrganizationId'
            name:
              type: string
            description:
              oneOf:
                - type: 'null'
                - type: string
            ownerId:
              type: string
            status:
              type: string
            createIdempotencyKey:
              type: string
            createdBy:
              type: string
            createdAt:
              type: string
              format: date-time
          additionalProperties: false
          required:
            - id
            - organizationId
            - name
            - description
            - ownerId
            - status
            - createIdempotencyKey
            - createdBy
            - createdAt
        version:
          type: object
          properties:
            id:
              type: string
            organizationId:
              $ref: '#/components/schemas/OrganizationId'
            campaignId:
              type: string
            version:
              type: number
            status:
              type: string
            targetType:
              type: string
            targetArtifactId:
              type: number
            targetArtifactVersionId:
              type: number
            targetContentHash:
              type: string
            snapshotHash:
              type: string
            snapshot:
              type: object
              properties:
                schemaVersion:
                  type: number
                  enum:
                    - 1
                target:
                  type: object
                  properties:
                    type:
                      oneOf:
                        - type: string
                          enum:
                            - prompt
                        - type: string
                          enum:
                            - scorer
                        - type: string
                          enum:
                            - workflow
                        - type: string
                          enum:
                            - deployment
                        - type: string
                          enum:
                            - tool
                    artifactId:
                      type: number
                    versionId:
                      type: number
                    contentHash:
                      type: string
                    environment:
                      type: string
                  additionalProperties: false
                  required:
                    - type
                    - artifactId
                    - versionId
                    - contentHash
                seed:
                  type: number
                variants:
                  type: array
                  items:
                    type: object
                    properties:
                      provider:
                        type: string
                      model:
                        type: string
                      parameters:
                        type: object
                        additionalProperties:
                          $ref: '#/components/schemas/JsonValue'
                      key:
                        type: string
                      routingProfileId:
                        type: string
                    additionalProperties: false
                    required:
                      - provider
                      - model
                      - parameters
                      - key
                budget:
                  type: object
                  properties:
                    maxCostUsd:
                      type: number
                    maxModelCalls:
                      type: number
                    concurrency:
                      type: number
                  additionalProperties: false
                  required:
                    - maxCostUsd
                    - maxModelCalls
                    - concurrency
                riskPackVersions:
                  type: array
                  items:
                    type: object
                    properties:
                      artifactId:
                        type: number
                      versionId:
                        type: number
                      contentHash:
                        type: string
                      taxonomy:
                        type: string
                      taxonomyVersion:
                        type: string
                    additionalProperties: false
                    required:
                      - artifactId
                      - versionId
                      - contentHash
                      - taxonomy
                      - taxonomyVersion
                attackCases:
                  type: array
                  items:
                    type: object
                    properties:
                      input:
                        type: string
                      severity:
                        oneOf:
                          - type: string
                            enum:
                              - low
                          - type: string
                            enum:
                              - medium
                          - type: string
                            enum:
                              - high
                          - type: string
                            enum:
                              - critical
                      id:
                        type: string
                      contentHash:
                        type: string
                      source:
                        oneOf:
                          - type: string
                            enum:
                              - generated
                          - type: string
                            enum:
                              - imported
                          - type: string
                            enum:
                              - built_in
                      category:
                        oneOf:
                          - type: string
                            enum:
                              - prompt_injection
                          - type: string
                            enum:
                              - data_exfiltration_privacy
                          - type: string
                            enum:
                              - harmful_content
                          - type: string
                            enum:
                              - misinformation_hallucination
                          - type: string
                            enum:
                              - authorization_bypass
                          - type: string
                            enum:
                              - tool_misuse
                          - type: string
                            enum:
                              - excessive_agency
                          - type: string
                            enum:
                              - insecure_output_handling
                          - type: string
                            enum:
                              - sensitive_data_disclosure
                          - type: string
                            enum:
                              - policy_evasion
                          - type: string
                            enum:
                              - denial_of_wallet
                          - type: string
                            enum:
                              - jailbreak_robustness
                      reviewStatus:
                        oneOf:
                          - type: string
                            enum:
                              - approved
                          - type: string
                            enum:
                              - proposed
                      riskPackVersionId:
                        type: number
                      caseKey:
                        type: string
                      technique:
                        type: string
                      expectedSafeBehavior:
                        type: string
                      successIndicators:
                        type: array
                        items:
                          type: string
                    additionalProperties: false
                    required:
                      - input
                      - severity
                      - id
                      - contentHash
                      - source
                      - category
                      - reviewStatus
                      - riskPackVersionId
                      - caseKey
                      - technique
                      - expectedSafeBehavior
                      - successIndicators
                scorers:
                  type: array
                  items:
                    type: object
                    properties:
                      artifactId:
                        type: number
                      versionId:
                        type: number
                      contentHash:
                        type: string
                      required:
                        type: boolean
                    additionalProperties: false
                    required:
                      - artifactId
                      - versionId
                      - contentHash
                      - required
                datasetVersionId:
                  type: string
                createdFromRunId:
                  type: string
              additionalProperties: false
              required:
                - schemaVersion
                - target
                - seed
                - variants
                - budget
                - riskPackVersions
                - attackCases
                - scorers
            createdFromRunId:
              oneOf:
                - type: 'null'
                - type: string
            createdBy:
              type: string
            createdAt:
              type: string
              format: date-time
            approvedBy:
              oneOf:
                - type: 'null'
                - type: string
            approvalRationale:
              oneOf:
                - type: 'null'
                - type: string
            approvedAt:
              oneOf:
                - type: 'null'
                - type: string
                  format: date-time
          additionalProperties: false
          required:
            - id
            - organizationId
            - campaignId
            - version
            - status
            - targetType
            - targetArtifactId
            - targetArtifactVersionId
            - targetContentHash
            - snapshotHash
            - snapshot
            - createdFromRunId
            - createdBy
            - createdAt
            - approvedBy
            - approvalRationale
            - approvedAt
        idempotent:
          type: boolean
      additionalProperties: false
      required:
        - campaign
        - version
        - idempotent
    PostApiRedTeamCampaignsResponse201ApplicationJson:
      type: object
      properties:
        campaign:
          type: object
          properties:
            id:
              type: string
            organizationId:
              $ref: '#/components/schemas/OrganizationId'
            name:
              type: string
            description:
              oneOf:
                - type: 'null'
                - type: string
            ownerId:
              type: string
            status:
              type: string
            createIdempotencyKey:
              type: string
            createdBy:
              type: string
            createdAt:
              type: string
              format: date-time
          additionalProperties: false
          required:
            - id
            - organizationId
            - name
            - description
            - ownerId
            - status
            - createIdempotencyKey
            - createdBy
            - createdAt
        version:
          type: object
          properties:
            id:
              type: string
            organizationId:
              $ref: '#/components/schemas/OrganizationId'
            campaignId:
              type: string
            version:
              type: number
            status:
              type: string
            targetType:
              type: string
            targetArtifactId:
              type: number
            targetArtifactVersionId:
              type: number
            targetContentHash:
              type: string
            snapshotHash:
              type: string
            snapshot:
              type: object
              properties:
                schemaVersion:
                  type: number
                  enum:
                    - 1
                target:
                  type: object
                  properties:
                    type:
                      oneOf:
                        - type: string
                          enum:
                            - prompt
                        - type: string
                          enum:
                            - scorer
                        - type: string
                          enum:
                            - workflow
                        - type: string
                          enum:
                            - deployment
                        - type: string
                          enum:
                            - tool
                    artifactId:
                      type: number
                    versionId:
                      type: number
                    contentHash:
                      type: string
                    environment:
                      type: string
                  additionalProperties: false
                  required:
                    - type
                    - artifactId
                    - versionId
                    - contentHash
                seed:
                  type: number
                variants:
                  type: array
                  items:
                    type: object
                    properties:
                      provider:
                        type: string
                      model:
                        type: string
                      parameters:
                        type: object
                        additionalProperties:
                          $ref: '#/components/schemas/JsonValue'
                      key:
                        type: string
                      routingProfileId:
                        type: string
                    additionalProperties: false
                    required:
                      - provider
                      - model
                      - parameters
                      - key
                budget:
                  type: object
                  properties:
                    maxCostUsd:
                      type: number
                    maxModelCalls:
                      type: number
                    concurrency:
                      type: number
                  additionalProperties: false
                  required:
                    - maxCostUsd
                    - maxModelCalls
                    - concurrency
                riskPackVersions:
                  type: array
                  items:
                    type: object
                    properties:
                      artifactId:
                        type: number
                      versionId:
                        type: number
                      contentHash:
                        type: string
                      taxonomy:
                        type: string
                      taxonomyVersion:
                        type: string
                    additionalProperties: false
                    required:
                      - artifactId
                      - versionId
                      - contentHash
                      - taxonomy
                      - taxonomyVersion
                attackCases:
                  type: array
                  items:
                    type: object
                    properties:
                      input:
                        type: string
                      severity:
                        oneOf:
                          - type: string
                            enum:
                              - low
                          - type: string
                            enum:
                              - medium
                          - type: string
                            enum:
                              - high
                          - type: string
                            enum:
                              - critical
                      id:
                        type: string
                      contentHash:
                        type: string
                      source:
                        oneOf:
                          - type: string
                            enum:
                              - generated
                          - type: string
                            enum:
                              - imported
                          - type: string
                            enum:
                              - built_in
                      category:
                        oneOf:
                          - type: string
                            enum:
                              - prompt_injection
                          - type: string
                            enum:
                              - data_exfiltration_privacy
                          - type: string
                            enum:
                              - harmful_content
                          - type: string
                            enum:
                              - misinformation_hallucination
                          - type: string
                            enum:
                              - authorization_bypass
                          - type: string
                            enum:
                              - tool_misuse
                          - type: string
                            enum:
                              - excessive_agency
                          - type: string
                            enum:
                              - insecure_output_handling
                          - type: string
                            enum:
                              - sensitive_data_disclosure
                          - type: string
                            enum:
                              - policy_evasion
                          - type: string
                            enum:
                              - denial_of_wallet
                          - type: string
                            enum:
                              - jailbreak_robustness
                      reviewStatus:
                        oneOf:
                          - type: string
                            enum:
                              - approved
                          - type: string
                            enum:
                              - proposed
                      riskPackVersionId:
                        type: number
                      caseKey:
                        type: string
                      technique:
                        type: string
                      expectedSafeBehavior:
                        type: string
                      successIndicators:
                        type: array
                        items:
                          type: string
                    additionalProperties: false
                    required:
                      - input
                      - severity
                      - id
                      - contentHash
                      - source
                      - category
                      - reviewStatus
                      - riskPackVersionId
                      - caseKey
                      - technique
                      - expectedSafeBehavior
                      - successIndicators
                scorers:
                  type: array
                  items:
                    type: object
                    properties:
                      artifactId:
                        type: number
                      versionId:
                        type: number
                      contentHash:
                        type: string
                      required:
                        type: boolean
                    additionalProperties: false
                    required:
                      - artifactId
                      - versionId
                      - contentHash
                      - required
                datasetVersionId:
                  type: string
                createdFromRunId:
                  type: string
              additionalProperties: false
              required:
                - schemaVersion
                - target
                - seed
                - variants
                - budget
                - riskPackVersions
                - attackCases
                - scorers
            createdFromRunId:
              oneOf:
                - type: 'null'
                - type: string
            createdBy:
              type: string
            createdAt:
              type: string
              format: date-time
            approvedBy:
              oneOf:
                - type: 'null'
                - type: string
            approvalRationale:
              oneOf:
                - type: 'null'
                - type: string
            approvedAt:
              oneOf:
                - type: 'null'
                - type: string
                  format: date-time
          additionalProperties: false
          required:
            - id
            - organizationId
            - campaignId
            - version
            - status
            - targetType
            - targetArtifactId
            - targetArtifactVersionId
            - targetContentHash
            - snapshotHash
            - snapshot
            - createdFromRunId
            - createdBy
            - createdAt
            - approvedBy
            - approvalRationale
            - approvedAt
        idempotent:
          type: boolean
      additionalProperties: false
      required:
        - campaign
        - version
        - idempotent
    JsonValue:
      oneOf:
        - type: 'null'
        - type: boolean
        - type: number
        - type: string
        - type: array
          items:
            $ref: '#/components/schemas/JsonValue'
        - type: object
          additionalProperties:
            $ref: '#/components/schemas/JsonValue'
    OrganizationId:
      type: string
      format: uuid
    ApiError:
      type: object
      properties:
        error:
          type: object
          properties:
            code:
              type: string
              enum:
                - UNAUTHORIZED
                - FORBIDDEN
                - NOT_FOUND
                - VALIDATION_ERROR
                - RATE_LIMITED
                - CONFLICT
                - INTERNAL_ERROR
                - SERVICE_UNAVAILABLE
                - QUOTA_EXCEEDED
                - NO_ORG_MEMBERSHIP
                - CROSS_ORG_REFERENCE
                - INCOMPLETE
                - MALFORMED
            message:
              type: string
            details: {}
            requestId:
              type: string
              format: uuid
          required:
            - code
            - message
      required:
        - error
  responses:
    ValidationError:
      description: Validation error
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    Unauthorized:
      description: Unauthorized
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    Forbidden:
      description: Forbidden
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    NotFound:
      description: Resource not found
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    Conflict:
      description: Conflict
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    RateLimited:
      description: Rate limit exceeded
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    InternalError:
      description: Internal server error
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      bearerFormat: API Key or Session Token

````