---
title: "Create or update a rubric or marking guide by external identifier"
description: "The body is the full representation: null clears a field, an absent field is left alone. Answers 201 when the row was created and 200 when it was updated, which is how a system of record tells a create from a reconcile.\n\n### Quire permissions\n\nRequired capability: `grade/managegradingforms`.\n\nCredential scopes: `grades:write`.\n\nThe acting subject must also be allowed to perform this action in the organisation."
image: "https://docs.quirelms.com/og.png"
---

> Documentation Index
> Fetch the complete documentation index at: https://docs.quirelms.com/llms.txt
> Use this file to discover all available pages before exploring further.

Path: Quire API › grades

`PUT /rubrics/ext:{external_id}`

The body is the full representation: null clears a field, an absent field is left alone. Answers 201 when the row was created and 200 when it was updated, which is how a system of record tells a create from a reconcile.

\### Quire permissions

Required capability: `grade/managegradingforms`.

Credential scopes: `grades:write`.

The acting subject must also be allowed to perform this action in the organisation.

## Authentication

Requires one of the following:

- `apiKey`, http, header `Authorization`, scopes: `grades:write`
- `oauth2`, oauth2, scopes: `grades:write`

## Path parameters

- `upsertRubric.path.external_id` (string, required) — The external identifier, unique per tenant per type, as supplied by the system of record.

## Header parameters

- `upsertRubric.header.Quire-Version` (string, optional) — The dated API revision to serve this request at. Omitted, the request is served at the revision the credential was issued against. The response echoes the revision actually applied.
  - format `date`
- `upsertRubric.header.Idempotency-Key` (string, optional) — A caller-chosen key making this request safe to retry. A replay of a completed request returns the recorded response with `Idempotency-Replayed: true`. Reusing a key for a different request is refused.
  - maxLength 255

## Request body

_Required._

- `upsertRubric.course_id` (string, required) — The course the form belongs to. Fixed once created.
  - format `uuid`; pattern `^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[1-8][0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12}|00000000-0000-0000-0000-000000000000|ffffffff-ffff-ffff-ffff-ffffffffffff)$`
- `upsertRubric.method` (string, required) — Fixed once created.
  - one of `"rubric"`, `"guide"`
- `upsertRubric.name` (string, required)
  - minLength 1; maxLength 255
- `upsertRubric.criteria` (array<object>, required)
  - `upsertRubric.criteria.short_name` (string, required) — A rubric: the criterion text. A guide: the criterion name.
    - minLength 1; maxLength 1000
  - `upsertRubric.criteria.description` (any of, optional) — A guide: what markers see.
    - any of: `string`, `null`
  - `upsertRubric.criteria.learner_description` (any of, optional) — A guide: what learners see.
    - any of: `string`, `null`
  - `upsertRubric.criteria.max_score` (any of, optional) — A guide only: the most the criterion can score.
    - any of: `number`, `null`
  - `upsertRubric.criteria.levels` (array<object>, optional) — A rubric only: the levels, in order.
    - `upsertRubric.criteria.levels.score` (number, required)
      - min -100000; max 100000
    - `upsertRubric.criteria.levels.definition` (string, required)
      - minLength 1; maxLength 4000
- `upsertRubric.description` (any of, optional)
  - any of: `string`, `null`
- `upsertRubric.options` (map<boolean>, optional) — Display options: showPointsToLearners, showRemarksToLearners, levelsAscending (rubric), showMaxToLearners (guide).
- `upsertRubric.comments` (array<string>, optional) — A guide's frequently used comments.
  - minLength 1; maxLength 4000

## Example request

```json
{
  "course_id": "5e757794-c815-4ccc-bf16-1010d8ef2347",
  "method": "rubric",
  "name": "string",
  "description": "string",
  "options": {
    "property1": true,
    "property2": true
  },
  "criteria": [
    {
      "short_name": "string",
      "description": "string",
      "learner_description": "string",
      "max_score": 100000,
      "levels": [
        {
          "score": -100000,
          "definition": "string"
        }
      ]
    }
  ],
  "comments": [
    "string"
  ]
}
```

## Code samples

### cURL

```curl
curl --request PUT \
  --url https://your-organisation.quirelms.com/api/v1/rubrics/ext:string \
  --header 'Authorization: Bearer <token>' \
  --header 'Content-Type: application/json' \
  --data '
{
  "course_id": "5e757794-c815-4ccc-bf16-1010d8ef2347",
  "method": "rubric",
  "name": "string",
  "description": "string",
  "options": {
    "property1": true,
    "property2": true
  },
  "criteria": [
    {
      "short_name": "string",
      "description": "string",
      "learner_description": "string",
      "max_score": 100000,
      "levels": [
        {
          "score": -100000,
          "definition": "string"
        }
      ]
    }
  ],
  "comments": [
    "string"
  ]
}
'
```

### TypeScript

```typescript
const url = 'https://your-organisation.quirelms.com/api/v1/rubrics/ext:string';
const options = {
  method: 'PUT',
  headers: {'Content-Type': 'application/json', Authorization: 'Bearer <token>'},
  body: JSON.stringify({
    course_id: '5e757794-c815-4ccc-bf16-1010d8ef2347',
    method: 'rubric',
    name: 'string',
    description: 'string',
    options: {property1: true, property2: true},
    criteria: [
      {
        short_name: 'string',
        description: 'string',
        learner_description: 'string',
        max_score: 100000,
        levels: [{score: -100000, definition: 'string'}]
      }
    ],
    comments: ['string']
  })
};

fetch(url, options)
  .then(res => res.json())
  .then(json => console.log(json))
  .catch(err => console.error(err));
```

### Python

```python
import requests

url = "https://your-organisation.quirelms.com/api/v1/rubrics/ext:string"

payload = {
    "course_id": "5e757794-c815-4ccc-bf16-1010d8ef2347",
    "method": "rubric",
    "name": "string",
    "description": "string",
    "options": {
        "property1": True,
        "property2": True
    },
    "criteria": [
        {
            "short_name": "string",
            "description": "string",
            "learner_description": "string",
            "max_score": 100000,
            "levels": [
                {
                    "score": -100000,
                    "definition": "string"
                }
            ]
        }
    ],
    "comments": ["string"]
}
headers = {
    "Content-Type": "application/json",
    "Authorization": "Bearer <token>"
}

response = requests.put(url, json=payload, headers=headers)

print(response.text)
```

## Responses

### 200

Success.

#### Example

```json
{
  "id": "string",
  "external_id": "string",
  "course_id": "string",
  "method": "rubric",
  "name": "string",
  "description": "string",
  "options": null,
  "is_template": true,
  "criteria": null,
  "deleted_at": "string",
  "created_at": "string",
  "updated_at": "string"
}
```

- `upsertRubric.response.200.id` (string, required)
- `upsertRubric.response.200.external_id` (string | null, required)
- `upsertRubric.response.200.course_id` (string, required)
- `upsertRubric.response.200.method` (string, required)
  - one of `"rubric"`, `"guide"`
- `upsertRubric.response.200.name` (string, required)
- `upsertRubric.response.200.description` (string | null, required)
- `upsertRubric.response.200.options` (unknown, required)
- `upsertRubric.response.200.is_template` (boolean, required)
- `upsertRubric.response.200.criteria` (unknown, required)
- `upsertRubric.response.200.deleted_at` (any of, required)
  - any of: `string`, `null`
- `upsertRubric.response.200.created_at` (string, required) — RFC 3339 timestamp in UTC.
- `upsertRubric.response.200.updated_at` (string, required) — RFC 3339 timestamp in UTC.

### 201

Success.

#### Example

```json
{
  "id": "string",
  "external_id": "string",
  "course_id": "string",
  "method": "rubric",
  "name": "string",
  "description": "string",
  "options": null,
  "is_template": true,
  "criteria": null,
  "deleted_at": "string",
  "created_at": "string",
  "updated_at": "string"
}
```

- `upsertRubric.response.201.id` (string, required)
- `upsertRubric.response.201.external_id` (string | null, required)
- `upsertRubric.response.201.course_id` (string, required)
- `upsertRubric.response.201.method` (string, required)
  - one of `"rubric"`, `"guide"`
- `upsertRubric.response.201.name` (string, required)
- `upsertRubric.response.201.description` (string | null, required)
- `upsertRubric.response.201.options` (unknown, required)
- `upsertRubric.response.201.is_template` (boolean, required)
- `upsertRubric.response.201.criteria` (unknown, required)
- `upsertRubric.response.201.deleted_at` (any of, required)
  - any of: `string`, `null`
- `upsertRubric.response.201.created_at` (string, required) — RFC 3339 timestamp in UTC.
- `upsertRubric.response.201.updated_at` (string, required) — RFC 3339 timestamp in UTC.

### 401

The credential is missing, malformed, expired or revoked.

#### Example

```json
{
  "type": "http://example.com",
  "title": "string",
  "status": 0,
  "code": "string",
  "category": "validation",
  "detail": "string",
  "request_id": "string",
  "errors": [
    {
      "path": "string",
      "code": "string",
      "detail": "string"
    }
  ],
  "retry_after": 0,
  "docs_url": "http://example.com"
}
```

- `upsertRubric.response.401.type` (string, required)
  - format `uri`
- `upsertRubric.response.401.title` (string, required)
- `upsertRubric.response.401.status` (integer, required)
- `upsertRubric.response.401.code` (string, required)
- `upsertRubric.response.401.category` (string, required)
  - one of `"validation"`, `"authentication"`, `"authorization"`, `"not_found"`, `"conflict"`, `"precondition"`, `"quota"`, `"rate_limit"`, `"upstream"`, `"internal"`
- `upsertRubric.response.401.detail` (string, required)
- `upsertRubric.response.401.request_id` (string, required)
- `upsertRubric.response.401.docs_url` (string, required)
  - format `uri`
- `upsertRubric.response.401.errors` (array<object>, optional)
  - `upsertRubric.response.401.errors.path` (string, required) — RFC 6901 JSON Pointer into the request body.
  - `upsertRubric.response.401.errors.code` (string, required)
  - `upsertRubric.response.401.errors.detail` (string, required)
- `upsertRubric.response.401.retry_after` (integer | null, optional)

### 403

The credential lacks the scope this operation requires, or the acting subject lacks the capability.

#### Example

```json
{
  "type": "http://example.com",
  "title": "string",
  "status": 0,
  "code": "string",
  "category": "validation",
  "detail": "string",
  "request_id": "string",
  "errors": [
    {
      "path": "string",
      "code": "string",
      "detail": "string"
    }
  ],
  "retry_after": 0,
  "docs_url": "http://example.com"
}
```

- `upsertRubric.response.403.type` (string, required)
  - format `uri`
- `upsertRubric.response.403.title` (string, required)
- `upsertRubric.response.403.status` (integer, required)
- `upsertRubric.response.403.code` (string, required)
- `upsertRubric.response.403.category` (string, required)
  - one of `"validation"`, `"authentication"`, `"authorization"`, `"not_found"`, `"conflict"`, `"precondition"`, `"quota"`, `"rate_limit"`, `"upstream"`, `"internal"`
- `upsertRubric.response.403.detail` (string, required)
- `upsertRubric.response.403.request_id` (string, required)
- `upsertRubric.response.403.docs_url` (string, required)
  - format `uri`
- `upsertRubric.response.403.errors` (array<object>, optional)
  - `upsertRubric.response.403.errors.path` (string, required) — RFC 6901 JSON Pointer into the request body.
  - `upsertRubric.response.403.errors.code` (string, required)
  - `upsertRubric.response.403.errors.detail` (string, required)
- `upsertRubric.response.403.retry_after` (integer | null, optional)

### 404

No such resource, or none this credential is permitted to know about.

#### Example

```json
{
  "type": "http://example.com",
  "title": "string",
  "status": 0,
  "code": "string",
  "category": "validation",
  "detail": "string",
  "request_id": "string",
  "errors": [
    {
      "path": "string",
      "code": "string",
      "detail": "string"
    }
  ],
  "retry_after": 0,
  "docs_url": "http://example.com"
}
```

- `upsertRubric.response.404.type` (string, required)
  - format `uri`
- `upsertRubric.response.404.title` (string, required)
- `upsertRubric.response.404.status` (integer, required)
- `upsertRubric.response.404.code` (string, required)
- `upsertRubric.response.404.category` (string, required)
  - one of `"validation"`, `"authentication"`, `"authorization"`, `"not_found"`, `"conflict"`, `"precondition"`, `"quota"`, `"rate_limit"`, `"upstream"`, `"internal"`
- `upsertRubric.response.404.detail` (string, required)
- `upsertRubric.response.404.request_id` (string, required)
- `upsertRubric.response.404.docs_url` (string, required)
  - format `uri`
- `upsertRubric.response.404.errors` (array<object>, optional)
  - `upsertRubric.response.404.errors.path` (string, required) — RFC 6901 JSON Pointer into the request body.
  - `upsertRubric.response.404.errors.code` (string, required)
  - `upsertRubric.response.404.errors.detail` (string, required)
- `upsertRubric.response.404.retry_after` (integer | null, optional)

### 409

The request conflicts with the current state, with a previous use of the same idempotency key, or with a concurrent write.

#### Example

```json
{
  "type": "http://example.com",
  "title": "string",
  "status": 0,
  "code": "string",
  "category": "validation",
  "detail": "string",
  "request_id": "string",
  "errors": [
    {
      "path": "string",
      "code": "string",
      "detail": "string"
    }
  ],
  "retry_after": 0,
  "docs_url": "http://example.com"
}
```

- `upsertRubric.response.409.type` (string, required)
  - format `uri`
- `upsertRubric.response.409.title` (string, required)
- `upsertRubric.response.409.status` (integer, required)
- `upsertRubric.response.409.code` (string, required)
- `upsertRubric.response.409.category` (string, required)
  - one of `"validation"`, `"authentication"`, `"authorization"`, `"not_found"`, `"conflict"`, `"precondition"`, `"quota"`, `"rate_limit"`, `"upstream"`, `"internal"`
- `upsertRubric.response.409.detail` (string, required)
- `upsertRubric.response.409.request_id` (string, required)
- `upsertRubric.response.409.docs_url` (string, required)
  - format `uri`
- `upsertRubric.response.409.errors` (array<object>, optional)
  - `upsertRubric.response.409.errors.path` (string, required) — RFC 6901 JSON Pointer into the request body.
  - `upsertRubric.response.409.errors.code` (string, required)
  - `upsertRubric.response.409.errors.detail` (string, required)
- `upsertRubric.response.409.retry_after` (integer | null, optional)

### 422

The request was understood and its content is not valid. `errors` names each field.

#### Example

```json
{
  "type": "http://example.com",
  "title": "string",
  "status": 0,
  "code": "string",
  "category": "validation",
  "detail": "string",
  "request_id": "string",
  "errors": [
    {
      "path": "string",
      "code": "string",
      "detail": "string"
    }
  ],
  "retry_after": 0,
  "docs_url": "http://example.com"
}
```

- `upsertRubric.response.422.type` (string, required)
  - format `uri`
- `upsertRubric.response.422.title` (string, required)
- `upsertRubric.response.422.status` (integer, required)
- `upsertRubric.response.422.code` (string, required)
- `upsertRubric.response.422.category` (string, required)
  - one of `"validation"`, `"authentication"`, `"authorization"`, `"not_found"`, `"conflict"`, `"precondition"`, `"quota"`, `"rate_limit"`, `"upstream"`, `"internal"`
- `upsertRubric.response.422.detail` (string, required)
- `upsertRubric.response.422.request_id` (string, required)
- `upsertRubric.response.422.docs_url` (string, required)
  - format `uri`
- `upsertRubric.response.422.errors` (array<object>, optional)
  - `upsertRubric.response.422.errors.path` (string, required) — RFC 6901 JSON Pointer into the request body.
  - `upsertRubric.response.422.errors.code` (string, required)
  - `upsertRubric.response.422.errors.detail` (string, required)
- `upsertRubric.response.422.retry_after` (integer | null, optional)

### 429

A rate limit or a concurrency cap was reached. `Retry-After` says when to try again.

#### Example

```json
{
  "type": "http://example.com",
  "title": "string",
  "status": 0,
  "code": "string",
  "category": "validation",
  "detail": "string",
  "request_id": "string",
  "errors": [
    {
      "path": "string",
      "code": "string",
      "detail": "string"
    }
  ],
  "retry_after": 0,
  "docs_url": "http://example.com"
}
```

- `upsertRubric.response.429.type` (string, required)
  - format `uri`
- `upsertRubric.response.429.title` (string, required)
- `upsertRubric.response.429.status` (integer, required)
- `upsertRubric.response.429.code` (string, required)
- `upsertRubric.response.429.category` (string, required)
  - one of `"validation"`, `"authentication"`, `"authorization"`, `"not_found"`, `"conflict"`, `"precondition"`, `"quota"`, `"rate_limit"`, `"upstream"`, `"internal"`
- `upsertRubric.response.429.detail` (string, required)
- `upsertRubric.response.429.request_id` (string, required)
- `upsertRubric.response.429.docs_url` (string, required)
  - format `uri`
- `upsertRubric.response.429.errors` (array<object>, optional)
  - `upsertRubric.response.429.errors.path` (string, required) — RFC 6901 JSON Pointer into the request body.
  - `upsertRubric.response.429.errors.code` (string, required)
  - `upsertRubric.response.429.errors.detail` (string, required)
- `upsertRubric.response.429.retry_after` (integer | null, optional)

### 500

Something failed at our end. Quote `request_id` when reporting it.

#### Example

```json
{
  "type": "http://example.com",
  "title": "string",
  "status": 0,
  "code": "string",
  "category": "validation",
  "detail": "string",
  "request_id": "string",
  "errors": [
    {
      "path": "string",
      "code": "string",
      "detail": "string"
    }
  ],
  "retry_after": 0,
  "docs_url": "http://example.com"
}
```

- `upsertRubric.response.500.type` (string, required)
  - format `uri`
- `upsertRubric.response.500.title` (string, required)
- `upsertRubric.response.500.status` (integer, required)
- `upsertRubric.response.500.code` (string, required)
- `upsertRubric.response.500.category` (string, required)
  - one of `"validation"`, `"authentication"`, `"authorization"`, `"not_found"`, `"conflict"`, `"precondition"`, `"quota"`, `"rate_limit"`, `"upstream"`, `"internal"`
- `upsertRubric.response.500.detail` (string, required)
- `upsertRubric.response.500.request_id` (string, required)
- `upsertRubric.response.500.docs_url` (string, required)
  - format `uri`
- `upsertRubric.response.500.errors` (array<object>, optional)
  - `upsertRubric.response.500.errors.path` (string, required) — RFC 6901 JSON Pointer into the request body.
  - `upsertRubric.response.500.errors.code` (string, required)
  - `upsertRubric.response.500.errors.detail` (string, required)
- `upsertRubric.response.500.retry_after` (integer | null, optional)


Source: https://docs.quirelms.com/api/grades/upsertRubric/index.md
