The authenticated principal + effective capabilities.
GET
/me
const url = 'https://api.gospl.example/v1/me';const options = {method: 'GET', headers: {Authorization: 'Bearer <token>'}};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request GET \ --url https://api.gospl.example/v1/me \ --header 'Authorization: Bearer <token>'Authorizations
Section titled “Authorizations ”Responses
Section titled “ Responses ”OK
Media type application/json
object
userId
required
string format: uuid
tenantId
required
string format: uuid
roles
required
Array<string>
capabilities
required
Effective capability keys the frontend uses to render controls.
Array<string>
Example
{ "roles": [ "employee" ]}Missing/invalid credentials.
Media type application/json
object
code
required
string
message
required
string
Example generated
{ "code": "example", "message": "example"}