> ## Documentation Index
> Fetch the complete documentation index at: https://conductorone-muhammad-kumail-github-mcp-tab.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# Update

> Update a mapping's editable fields via update_mask. The resource server
 and client key identify the mapping and are immutable. Editable paths:
 audience_client_id, disabled.



## OpenAPI

````yaml https://spec.speakeasy.com/conductor-one/conductorone/my-source-with-code-samples post /api/v1/xaa/resource_servers/{client_audience_mapping_xaa_resource_server_id}/client_audience_mappings/update
openapi: 3.1.0
info:
  description: The C1 API is a HTTP API for managing C1 resources.
  title: C1 API
  version: 0.1.0-alpha
servers:
  - description: The C1 API server for the current tenant.
    url: https://{tenantDomain}.conductor.one
    variables:
      tenantDomain:
        default: example
        description: The domain of the tenant to use for this request.
security:
  - bearerAuth: []
    oauth: []
paths:
  /api/v1/xaa/resource_servers/{client_audience_mapping_xaa_resource_server_id}/client_audience_mappings/update:
    post:
      tags:
        - Cross-App Access
      summary: Update
      description: |-
        Update a mapping's editable fields via update_mask. The resource server
         and client key identify the mapping and are immutable. Editable paths:
         audience_client_id, disabled.
      operationId: c1.api.cross_app_access.v1.XAAClientAudienceMappingService.Update
      parameters:
        - in: path
          name: client_audience_mapping_xaa_resource_server_id
          required: true
          schema:
            description: The resource server this mapping applies to.
            type: string
      requestBody:
        content:
          application/json:
            schema:
              $ref: >-
                #/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceUpdateRequestInput
      responses:
        '200':
          content:
            application/json:
              schema:
                $ref: >-
                  #/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceUpdateResponse
          description: >-
            XAAClientAudienceMappingServiceUpdateResponse returns the updated
            mapping.
      x-codeSamples:
        - lang: go
          label: Update
          source: "package main\n\nimport(\n\t\"context\"\n\t\"github.com/conductorone/conductorone-sdk-go/pkg/models/shared\"\n\tconductoronesdkgo \"github.com/conductorone/conductorone-sdk-go\"\n\t\"github.com/conductorone/conductorone-sdk-go/pkg/models/operations\"\n\t\"log\"\n)\n\nfunc main() {\n    ctx := context.Background()\n\n    s := conductoronesdkgo.New(\n        conductoronesdkgo.WithSecurity(shared.Security{\n            BearerAuth: \"<YOUR_BEARER_TOKEN_HERE>\",\n            Oauth: \"<YOUR_OAUTH_HERE>\",\n        }),\n    )\n\n    res, err := s.XAAClientAudienceMapping.Update(ctx, operations.C1APICrossAppAccessV1XAAClientAudienceMappingServiceUpdateRequest{\n        ClientAudienceMappingXaaResourceServerID: \"<id>\",\n    })\n    if err != nil {\n        log.Fatal(err)\n    }\n    if res.XAAClientAudienceMappingServiceUpdateResponse != nil {\n        // handle response\n    }\n}"
components:
  schemas:
    c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceUpdateRequestInput:
      description: >-
        XAAClientAudienceMappingServiceUpdateRequest updates an existing
        mapping.
      properties:
        clientAudienceMapping:
          oneOf:
            - $ref: >-
                #/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMapping
            - type: 'null'
        updateMask:
          type:
            - string
            - 'null'
      title: Xaa Client Audience Mapping Service Update Request
      type: object
      x-speakeasy-name-override: XAAClientAudienceMappingServiceUpdateRequest
    c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceUpdateResponse:
      description: >-
        XAAClientAudienceMappingServiceUpdateResponse returns the updated
        mapping.
      properties:
        clientAudienceMapping:
          oneOf:
            - $ref: >-
                #/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMapping
            - type: 'null'
      title: Xaa Client Audience Mapping Service Update Response
      type: object
      x-speakeasy-name-override: XAAClientAudienceMappingServiceUpdateResponse
    c1.api.cross_app_access.v1.XAAClientAudienceMapping:
      description: |-
        XAAClientAudienceMapping maps a client to its identifier at one resource
         server. Never stores credential material.
      properties:
        audienceClientId:
          description: >-
            The client's identifier at the resource authorization server.
            Stamped
             verbatim into the grant's client_id claim.
          type: string
        clientKey:
          description: |-
            Stable client registration key. One of: a DCR software_id form
             (dcr://<software_id>), a CIMD client_id URL, a native C1 form
             (c1://<service_principal_id>), or a raw client_id.
          type: string
        createdAt:
          format: date-time
          type:
            - string
            - 'null'
        deletedAt:
          format: date-time
          type:
            - string
            - 'null'
        disabled:
          description: >-
            When true, exchange requests from this client for this resource
            server are
             rejected without removing the mapping (a kill switch).
          type: boolean
        updatedAt:
          format: date-time
          type:
            - string
            - 'null'
        xaaResourceServerId:
          description: The resource server this mapping applies to.
          type: string
      title: Xaa Client Audience Mapping
      type: object
      x-speakeasy-name-override: XAAClientAudienceMapping
  securitySchemes:
    bearerAuth:
      scheme: bearer
      type: http
    oauth:
      description: >-
        This API uses OAuth2 with the Client Credential flow.

        Client Credentials must be sent in the BODY, not the headers.

        For an example of how to implement this, refer to the
        [c1TokenSource.Token()](https://github.com/ConductorOne/conductorone-sdk-go/blob/3375fe7c0126d17e7ec4e711693dee7b791023aa/token_source.go#L101-L187)
        function.
      flows:
        clientCredentials:
          scopes: {}
          tokenUrl: /auth/v1/token
      type: oauth2

````