For the complete documentation index, see llms.txt. This page is also available as Markdown.

Get User Policy

Get effective policy for a user

get

Get policies of a single user

Authorizations
X-StampstringRequired

Base64URL-encoded JSON: { "publicKey": "<hex ed25519 pubkey>", "signature": "<hex ed25519 sig>" }. The signature covers JSON.stringify([binding, Object.entries(params)]), where binding is "<METHOD> <routePath>" (the server's route pattern, e.g. "POST /waas/create-wallet") and params is the request body (POST) or query params (GET). This binds the stamp to its own route so it cannot be replayed against a different endpoint. The one parameterized route, GET /waas/scheduled-transaction/{scheduleId}, binds to the literal "GET /waas/scheduled-transaction/:scheduleId", not the concrete ID. See the Signing Requests guide for runnable examples.

Query parameters
organizationIdstringRequired
userIdstringRequired
noncestringRequired
Responses
200

User policy

application/json
get/waas/get-user-policy
GET /waas/get-user-policy?organizationId=text&userId=text&nonce=text HTTP/1.1
Host: api.hinkal.io
X-Stamp: YOUR_API_KEY
Accept: */*
{
  "status": "success",
  "data": {
    "role": "root",
    "allowedActions": [
      "text"
    ]
  }
}

Last updated