Search User Grants​
Returns a list of user grants that match the search queries. User grants are the roles users have for a specific project and organization.
Header Parameters
x-zitadel-orgid string
The default is always the organization of the requesting user. If you like to get/set a result of another organization include the header. Make sure the user has permission to access the requested data.
application/json
application/grpc
application/grpc-web+proto
Request Body required
query object
queries object[]
Request Body required
query object
queries object[]
Request Body required
query object
queries object[]
Responses
- 200
- default
A successful response.
application/json
application/grpc
application/grpc-web+proto
Schema
Example (from schema)
Schema
details object
result object[]
{
"details": {
"totalResult": "2",
"processedSequence": "267831",
"viewTimestamp": "2024-04-08T09:12:37.529Z"
},
"result": [
{
"id": "69629023906488334",
"details": {
"sequence": "2",
"creationDate": "2024-04-08T09:12:37.529Z",
"changeDate": "2024-04-08T09:12:37.529Z",
"resourceOwner": "69629023906488334"
},
"roleKeys": [
"role.super.man"
],
"state": "USER_GRANT_STATE_UNSPECIFIED",
"userId": "69629023906488334",
"userName": "gigi-giraffe",
"firstName": "Gigi",
"lastName": "Giraffe",
"email": "gigi@zitadel.com",
"displayName": "Gigi Giraffe",
"orgId": "69629023906488334",
"orgName": "ZITADEL",
"orgDomain": "zitadel.cloud",
"projectId": "69629023906488334",
"projectName": "ZITADEL",
"projectGrantId": "69629023906488334",
"avatarUrl": "{your-domain}/assets/v1/avatar-32432jkh4kj32",
"preferredLoginName": "gigi@zitadel.com",
"userType": "TYPE_UNSPECIFIED",
"grantedOrgId": "69629023906488334",
"grantedOrgName": "ZITADEL",
"grantedOrgDomain": "zitadel.cloud"
}
]
}
Schema
Example (from schema)
Schema
details object
result object[]
{
"details": {
"totalResult": "2",
"processedSequence": "267831",
"viewTimestamp": "2024-04-08T09:12:37.530Z"
},
"result": [
{
"id": "69629023906488334",
"details": {
"sequence": "2",
"creationDate": "2024-04-08T09:12:37.530Z",
"changeDate": "2024-04-08T09:12:37.530Z",
"resourceOwner": "69629023906488334"
},
"roleKeys": [
"role.super.man"
],
"state": "USER_GRANT_STATE_UNSPECIFIED",
"userId": "69629023906488334",
"userName": "gigi-giraffe",
"firstName": "Gigi",
"lastName": "Giraffe",
"email": "gigi@zitadel.com",
"displayName": "Gigi Giraffe",
"orgId": "69629023906488334",
"orgName": "ZITADEL",
"orgDomain": "zitadel.cloud",
"projectId": "69629023906488334",
"projectName": "ZITADEL",
"projectGrantId": "69629023906488334",
"avatarUrl": "{your-domain}/assets/v1/avatar-32432jkh4kj32",
"preferredLoginName": "gigi@zitadel.com",
"userType": "TYPE_UNSPECIFIED",
"grantedOrgId": "69629023906488334",
"grantedOrgName": "ZITADEL",
"grantedOrgDomain": "zitadel.cloud"
}
]
}
Schema
Example (from schema)
Schema
details object
result object[]
{
"details": {
"totalResult": "2",
"processedSequence": "267831",
"viewTimestamp": "2024-04-08T09:12:37.530Z"
},
"result": [
{
"id": "69629023906488334",
"details": {
"sequence": "2",
"creationDate": "2024-04-08T09:12:37.530Z",
"changeDate": "2024-04-08T09:12:37.531Z",
"resourceOwner": "69629023906488334"
},
"roleKeys": [
"role.super.man"
],
"state": "USER_GRANT_STATE_UNSPECIFIED",
"userId": "69629023906488334",
"userName": "gigi-giraffe",
"firstName": "Gigi",
"lastName": "Giraffe",
"email": "gigi@zitadel.com",
"displayName": "Gigi Giraffe",
"orgId": "69629023906488334",
"orgName": "ZITADEL",
"orgDomain": "zitadel.cloud",
"projectId": "69629023906488334",
"projectName": "ZITADEL",
"projectGrantId": "69629023906488334",
"avatarUrl": "{your-domain}/assets/v1/avatar-32432jkh4kj32",
"preferredLoginName": "gigi@zitadel.com",
"userType": "TYPE_UNSPECIFIED",
"grantedOrgId": "69629023906488334",
"grantedOrgName": "ZITADEL",
"grantedOrgDomain": "zitadel.cloud"
}
]
}
An unexpected error response.
application/json
application/grpc
application/grpc-web+proto
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
Schema
Example (from schema)
Schema
code int32
message string
details object[]
{
"code": 0,
"message": "string",
"details": [
{
"@type": "string"
}
]
}
POST /users/grants/_search
Authorization
name: OAuth2type: oauth2scopes:openid,urn:zitadel:iam:org:project:id:zitadel:aud
flows: { "authorizationCode": { "authorizationUrl": "$CUSTOM-DOMAIN/oauth/v2/authorize", "tokenUrl": "$CUSTOM-DOMAIN/oauth/v2/token", "scopes": { "openid": "openid", "urn:zitadel:iam:org:project:id:zitadel:aud": "urn:zitadel:iam:org:project:id:zitadel:aud" } } }
Request
Request
curl / cURL
curl -L -X POST 'https://$CUSTOM-DOMAIN/management/v1/users/grants/_search' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"query": {
"offset": "0",
"limit": 100,
"asc": true
},
"queries": [
{
"projectIdQuery": {
"projectId": "69629023906488334"
},
"userIdQuery": {
"userId": "69629023906488334"
},
"withGrantedQuery": {
"withGranted": true
},
"roleKeyQuery": {
"roleKey": "role.super.man",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectGrantIdQuery": {
"projectGrantId": "69629023906488334"
},
"userNameQuery": {
"userName": "gigi-giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"firstNameQuery": {
"firstName": "Gigi",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"lastNameQuery": {
"lastName": "Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"emailQuery": {
"email": "gigi@zitadel.com",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgNameQuery": {
"orgName": "cao",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgDomainQuery": {
"orgDomain": "OS AG",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectNameQuery": {
"projectName": "ITADE",
"method": 3
},
"displayNameQuery": {
"displayName": "Gigi Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"userTypeQuery": {
"type": "TYPE_HUMAN"
}
}
]
}'
python / requests
curl -L -X POST 'https://$CUSTOM-DOMAIN/management/v1/users/grants/_search' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"query": {
"offset": "0",
"limit": 100,
"asc": true
},
"queries": [
{
"projectIdQuery": {
"projectId": "69629023906488334"
},
"userIdQuery": {
"userId": "69629023906488334"
},
"withGrantedQuery": {
"withGranted": true
},
"roleKeyQuery": {
"roleKey": "role.super.man",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectGrantIdQuery": {
"projectGrantId": "69629023906488334"
},
"userNameQuery": {
"userName": "gigi-giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"firstNameQuery": {
"firstName": "Gigi",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"lastNameQuery": {
"lastName": "Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"emailQuery": {
"email": "gigi@zitadel.com",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgNameQuery": {
"orgName": "cao",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgDomainQuery": {
"orgDomain": "OS AG",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectNameQuery": {
"projectName": "ITADE",
"method": 3
},
"displayNameQuery": {
"displayName": "Gigi Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"userTypeQuery": {
"type": "TYPE_HUMAN"
}
}
]
}'
go / native
curl -L -X POST 'https://$CUSTOM-DOMAIN/management/v1/users/grants/_search' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"query": {
"offset": "0",
"limit": 100,
"asc": true
},
"queries": [
{
"projectIdQuery": {
"projectId": "69629023906488334"
},
"userIdQuery": {
"userId": "69629023906488334"
},
"withGrantedQuery": {
"withGranted": true
},
"roleKeyQuery": {
"roleKey": "role.super.man",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectGrantIdQuery": {
"projectGrantId": "69629023906488334"
},
"userNameQuery": {
"userName": "gigi-giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"firstNameQuery": {
"firstName": "Gigi",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"lastNameQuery": {
"lastName": "Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"emailQuery": {
"email": "gigi@zitadel.com",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgNameQuery": {
"orgName": "cao",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgDomainQuery": {
"orgDomain": "OS AG",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectNameQuery": {
"projectName": "ITADE",
"method": 3
},
"displayNameQuery": {
"displayName": "Gigi Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"userTypeQuery": {
"type": "TYPE_HUMAN"
}
}
]
}'
nodejs / axios
curl -L -X POST 'https://$CUSTOM-DOMAIN/management/v1/users/grants/_search' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"query": {
"offset": "0",
"limit": 100,
"asc": true
},
"queries": [
{
"projectIdQuery": {
"projectId": "69629023906488334"
},
"userIdQuery": {
"userId": "69629023906488334"
},
"withGrantedQuery": {
"withGranted": true
},
"roleKeyQuery": {
"roleKey": "role.super.man",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectGrantIdQuery": {
"projectGrantId": "69629023906488334"
},
"userNameQuery": {
"userName": "gigi-giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"firstNameQuery": {
"firstName": "Gigi",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"lastNameQuery": {
"lastName": "Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"emailQuery": {
"email": "gigi@zitadel.com",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgNameQuery": {
"orgName": "cao",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgDomainQuery": {
"orgDomain": "OS AG",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectNameQuery": {
"projectName": "ITADE",
"method": 3
},
"displayNameQuery": {
"displayName": "Gigi Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"userTypeQuery": {
"type": "TYPE_HUMAN"
}
}
]
}'
ruby / Net::HTTP
curl -L -X POST 'https://$CUSTOM-DOMAIN/management/v1/users/grants/_search' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"query": {
"offset": "0",
"limit": 100,
"asc": true
},
"queries": [
{
"projectIdQuery": {
"projectId": "69629023906488334"
},
"userIdQuery": {
"userId": "69629023906488334"
},
"withGrantedQuery": {
"withGranted": true
},
"roleKeyQuery": {
"roleKey": "role.super.man",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectGrantIdQuery": {
"projectGrantId": "69629023906488334"
},
"userNameQuery": {
"userName": "gigi-giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"firstNameQuery": {
"firstName": "Gigi",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"lastNameQuery": {
"lastName": "Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"emailQuery": {
"email": "gigi@zitadel.com",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgNameQuery": {
"orgName": "cao",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgDomainQuery": {
"orgDomain": "OS AG",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectNameQuery": {
"projectName": "ITADE",
"method": 3
},
"displayNameQuery": {
"displayName": "Gigi Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"userTypeQuery": {
"type": "TYPE_HUMAN"
}
}
]
}'
csharp / RestSharp
curl -L -X POST 'https://$CUSTOM-DOMAIN/management/v1/users/grants/_search' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"query": {
"offset": "0",
"limit": 100,
"asc": true
},
"queries": [
{
"projectIdQuery": {
"projectId": "69629023906488334"
},
"userIdQuery": {
"userId": "69629023906488334"
},
"withGrantedQuery": {
"withGranted": true
},
"roleKeyQuery": {
"roleKey": "role.super.man",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectGrantIdQuery": {
"projectGrantId": "69629023906488334"
},
"userNameQuery": {
"userName": "gigi-giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"firstNameQuery": {
"firstName": "Gigi",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"lastNameQuery": {
"lastName": "Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"emailQuery": {
"email": "gigi@zitadel.com",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgNameQuery": {
"orgName": "cao",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgDomainQuery": {
"orgDomain": "OS AG",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectNameQuery": {
"projectName": "ITADE",
"method": 3
},
"displayNameQuery": {
"displayName": "Gigi Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"userTypeQuery": {
"type": "TYPE_HUMAN"
}
}
]
}'
php / cURL
curl -L -X POST 'https://$CUSTOM-DOMAIN/management/v1/users/grants/_search' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"query": {
"offset": "0",
"limit": 100,
"asc": true
},
"queries": [
{
"projectIdQuery": {
"projectId": "69629023906488334"
},
"userIdQuery": {
"userId": "69629023906488334"
},
"withGrantedQuery": {
"withGranted": true
},
"roleKeyQuery": {
"roleKey": "role.super.man",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectGrantIdQuery": {
"projectGrantId": "69629023906488334"
},
"userNameQuery": {
"userName": "gigi-giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"firstNameQuery": {
"firstName": "Gigi",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"lastNameQuery": {
"lastName": "Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"emailQuery": {
"email": "gigi@zitadel.com",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgNameQuery": {
"orgName": "cao",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgDomainQuery": {
"orgDomain": "OS AG",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectNameQuery": {
"projectName": "ITADE",
"method": 3
},
"displayNameQuery": {
"displayName": "Gigi Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"userTypeQuery": {
"type": "TYPE_HUMAN"
}
}
]
}'
java / OkHttp
curl -L -X POST 'https://$CUSTOM-DOMAIN/management/v1/users/grants/_search' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"query": {
"offset": "0",
"limit": 100,
"asc": true
},
"queries": [
{
"projectIdQuery": {
"projectId": "69629023906488334"
},
"userIdQuery": {
"userId": "69629023906488334"
},
"withGrantedQuery": {
"withGranted": true
},
"roleKeyQuery": {
"roleKey": "role.super.man",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectGrantIdQuery": {
"projectGrantId": "69629023906488334"
},
"userNameQuery": {
"userName": "gigi-giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"firstNameQuery": {
"firstName": "Gigi",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"lastNameQuery": {
"lastName": "Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"emailQuery": {
"email": "gigi@zitadel.com",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgNameQuery": {
"orgName": "cao",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgDomainQuery": {
"orgDomain": "OS AG",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectNameQuery": {
"projectName": "ITADE",
"method": 3
},
"displayNameQuery": {
"displayName": "Gigi Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"userTypeQuery": {
"type": "TYPE_HUMAN"
}
}
]
}'
powershell / RestMethod
curl -L -X POST 'https://$CUSTOM-DOMAIN/management/v1/users/grants/_search' \
-H 'Content-Type: application/json' \
-H 'Accept: application/json' \
-H 'Authorization: Bearer <TOKEN>' \
--data-raw '{
"query": {
"offset": "0",
"limit": 100,
"asc": true
},
"queries": [
{
"projectIdQuery": {
"projectId": "69629023906488334"
},
"userIdQuery": {
"userId": "69629023906488334"
},
"withGrantedQuery": {
"withGranted": true
},
"roleKeyQuery": {
"roleKey": "role.super.man",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectGrantIdQuery": {
"projectGrantId": "69629023906488334"
},
"userNameQuery": {
"userName": "gigi-giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"firstNameQuery": {
"firstName": "Gigi",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"lastNameQuery": {
"lastName": "Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"emailQuery": {
"email": "gigi@zitadel.com",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgNameQuery": {
"orgName": "cao",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"orgDomainQuery": {
"orgDomain": "OS AG",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"projectNameQuery": {
"projectName": "ITADE",
"method": 3
},
"displayNameQuery": {
"displayName": "Gigi Giraffe",
"method": "TEXT_QUERY_METHOD_EQUALS"
},
"userTypeQuery": {
"type": "TYPE_HUMAN"
}
}
]
}'