Open this resource#

Console route: /crds. This is a cluster-scoped resource; no namespace is part of its identity.

  1. Select the correct cluster in the sidebar.
  2. Open CRDs and narrow the list using the available namespace/search controls.
  3. Select the exact object by name. Verify its scope and identity at the top of the detail page.
The CRD list identifies API groups, served versions, scope and establishment status. Installed definitions vary by cluster.
The CRD list identifies API groups, served versions, scope and establishment status. Installed definitions vary by cluster. View full size ↗

What to inspect#

CRD name, group, versions, scope and schema in the definition.

Refresh the resource when you need the latest observation. Overview fields summarize the object; YAML exposes the complete returned document. A placeholder or missing status field should not be read as a successful or zero-valued result.

Use the available features#

Open CRDs and select the definition’s instance-list route. Choose a namespace for namespaced instances; cluster-scoped instances use their own scope. Open an instance to inspect its spec/status and use authorized generic actions.

Describe, Clone, YAML editing and Delete are shared resource actions where the page and your permissions allow them. Read Create, edit, clone and delete resources before applying a change.

A practical investigation#

An installed CRD describes an API but does not prove its controller is running. Use the CRD’s served version/schema and the actual instance status. Creating arbitrary YAML that violates the schema will be rejected.

  1. Establish the current state and the symptom you want to resolve.
  2. Identify whether a controller, Helm release or Delivery project owns the object.
  3. Make the smallest authorized change through that owner when possible.
  4. Refresh and verify the resulting resource state. Inspect related objects rather than stopping at a successful save message.

Permissions and unavailable data#

Listing this kind does not automatically grant every subresource action. The console checks operation access, and Kubernetes still checks the connected identity. If this API is not served by the cluster, fix the installation/version capability rather than treating an empty or unavailable page as an authorization grant.