Skip to content

Identity and access

Retrieve entitlements

GET/api/w/:wid/members/:uid/entitlements

What a person may do (tool, model, data_field, max_payment), effective and by source. A member may read their own.

#Authentication

Session cookie

A signed-in person: the console's session cookie. Every state-changing request also carries the header x-immiscible-csrf: 1, and the member's role decides what it may do. Bearer tokens are ignored on these routes, so no machine credential can reach them.

#Path parameters

widstringrequired

Workspace id

uidstringrequired

Member user id