On the wire
Ships with HTTP status 400, carrying "code": "RU-3013" in the response body alongside the human-readable error message. Existing fields are never replaced by the code: it is additive.
Common causes
- A header value or password with no ${SECRET:NAME} reference, which would store a real credential.
- A credential pasted beside a reference.
- A reference whose NAME is not capital letters, digits and underscores.
- A header name outside Authorization, Proxy-Authorization, Cookie, X-Api-Key and the names the location allows with REALUPTIME_AUTH_HEADERS.
- URL credentials and an Authorization header on the same check.
How to fix it
- Put the credential on the location's machine as REALUPTIME_SECRET_NAME, or in the file named by REALUPTIME_SECRETS_FILE.
- Reference it in the header value as ${SECRET:NAME}, for example Bearer ${SECRET:API_TOKEN}.
- To send another header, add its name to REALUPTIME_AUTH_HEADERS on the location's machine and restart the agent.
Related codes
Still stuck?
Ask support and mention RU-3013: the code pins down the exact refusal path, so you skip the diagnostic back-and-forth.