Skip to main content

List the fixed permission vocabulary for custom roles

GET 

/api/v1/authorization/permissions

Requires roles.manage. The returned codes are application-owned; custom roles cannot introduce a new code that has no server-side enforcement point.

Responses

Explicit permission codes allowed in a custom role