# Accounts Object

> Source: https://truto.one/docs/api-reference/unified-cloud-infrastructure-api/accounts/

Schema for the `Accounts` resource in **Unified Cloud Infrastructure API**.

## Properties

- **`id`** _(string, required)_
  Truto's stable unified identifier for this account — the provider's own account number (AWS 12-digit id, Azure subscription id, GCP project id). Every other resource's `account` reference resolves against this. Use `provider_id` for the full ARN or self-link.
- **`provider_id`** _(string)_
  The provider's own identifier, verbatim -- a full ARN, resource id, or self-link. Never truncated or normalised. Use it to find the object in the provider's console.
- **`provider`** _(string)_
  Which cloud this object was read from.
  Allowed: `aws`, `azure`, `gcp`
- **`account`** _(string)_
  The account, subscription or project this object belongs to.
- **`region`** _(string)_
  Where the object is located. 'global' marks resources with no region (e.g. IAM, a GCP VPC network). If the provider gives none, the collector's queried region is used instead and flagged in unreadable_fields.
- **`native_type`** _(string)_
  The provider's own type string, unmodified -- for example 'AWS::S3::Bucket', 'aws_iam_role', 'Microsoft.Sql/servers'. Used for display and drill-down.
- **`tags`** _(object)_
  Key-value pairs exactly as the customer set them -- no case folding, key/value normalisation, or merging across providers. An empty object means no tags; unreadable tags appear in unreadable_fields instead.
- **`collected_at`** _(string)_
  When Truto read this object from the provider, in UTC ISO 8601 with offset. Not the request time, and not a provider-supplied timestamp.
- **`updated_at`** _(string)_
  When the object was last modified at the provider, in UTC ISO 8601. Null when the provider does not record one - see unreadable_fields.
- **`unreadable_fields`** _(array<object>)_
  Fields on this object that could not be read, and why. An empty array means everything was read. Use this to tell a real value from a missing one.
  - **`field`** _(string)_
    The property on this resource that could not be read.
  - **`reason`** _(string)_
    Why the field could not be read.
    Allowed: `not_supported_by_provider`, `not_configured`, `permission_denied`, `not_collected`, `collection_error`, `partially_collected`
  - **`detail`** _(string)_
    Additional detail on the reason, when there is any.
- **`remote_data`** _(object)_
  Raw data returned from the remote API call.
- **`name`** _(string)_
  The account, subscription or project name.
- **`state`** _(string)_
  Lifecycle state of the account. On AWS this comes from Account.State, not the retired Account.Status field (which had no CLOSED value).
  Allowed: `pending`, `active`, `suspended`, `pending_closure`, `closed`, `unknown`
- **`email`** _(string)_
  The account's registered contact address, where the provider exposes it.
- **`parent_grouping`** _(object)_
  The organisational unit, folder or management group directly above this account.
  - **`id`** _(string)_
    The target's `id`.
- **`grouping_path`** _(string)_
  The full hierarchy path from the organisation root down to this account, as a single string.
- **`grouping_paths`** _(array<string>)_
  All hierarchy paths for this account, where a provider allows more than one. Never collapsed to a single value.
- **`joined_at`** _(string)_
  When the account joined the organisation. For an invited account this is the invitation acceptance date, which can be years after the account was actually created.
- **`joined_method`** _(string)_
  How the account entered the organisation, as the provider reports it.
- **`created_at`** _(string)_
  When the account was actually created. On AWS this requires a separate account-service call and is null unless that call was made; never back-filled from joined_at.
- **`is_connected`** _(boolean)_
  Whether Truto currently holds working credentials for this account. False for accounts discovered in the organisation but not reachable.

## Methods

- [GET /unified/cloud-infrastructure/accounts](/docs/api-reference/unified-cloud-infrastructure-api/accounts/list) — List Accounts
