Inspect effective current access
Returns the caller’s effective policy after OAuth admission and policy application: role, device mode, opt-out exclusions and expiry. For mode selected the result reflects the live legacy per-device grants. Every request re-evaluates this before any handler or tool runs.
/v1/accessAuthorizationBearer token (Clerk owner session) · headerrequiredOwner identity required.
AuthorizationBearer token (ol_agent token) · headerrequiredOwner-issued agent API connection; access ceiling and live device grants are checked separately.
AuthorizationBearer token (OAuth access token) · headerrequiredOAuth read/act scope is a ceiling. Scopes do not create device grants.
Successful response
dataEffectiveAccessrequiredThe caller's effective current access: policy role and mode plus, for selected mode, the live legacy per-device grants.
Show propertiesHide properties
principalstringrequiredrolestring | nullrequiredoperatoradministratornullmodestring | nullallselectednullreadOnlybooleanexcludedDevicesstring[]excludedFunctionsobject[]Show propertiesHide properties
objectdeviceIdstring | nullrequiredcapabilitystringrequiredexpiresAtinteger | nulldelegatedFromstringInvalid request or validation failure
errorobjectrequiredShow propertiesHide properties
codestringrequiredmessagestringissuesobject[]Show propertiesHide properties
objectpathstringmessagestringMissing or invalid credential
errorobjectrequiredShow propertiesHide properties
codestringrequiredmessagestringissuesobject[]Show propertiesHide properties
objectpathstringmessagestringInsufficient access or grant
errorobjectrequiredShow propertiesHide properties
codestringrequiredmessagestringissuesobject[]Show propertiesHide properties
objectpathstringmessagestringResource not found
errorobjectrequiredShow propertiesHide properties
codestringrequiredmessagestringissuesobject[]Show propertiesHide properties
objectpathstringmessagestringRequest body exceeds the 16 KiB limit
errorobjectrequiredShow propertiesHide properties
codestringrequiredmessagestringissuesobject[]Show propertiesHide properties
objectpathstringmessagestringRate limit or workspace capacity limit
errorobjectrequiredShow propertiesHide properties
codestringrequiredmessagestringissuesobject[]Show propertiesHide properties
objectpathstringmessagestringInternal error
errorobjectrequiredShow propertiesHide properties
codestringrequiredmessagestringissuesobject[]Show propertiesHide properties
objectpathstringmessagestringService or required integration is not configured
errorobjectrequiredShow propertiesHide properties
codestringrequiredmessagestringissuesobject[]Show propertiesHide properties
objectpathstringmessagestring