Skip to content
openlaunch
Esc
↑↓navigate↵open⌘Jpreview

Inspect effective current access

Returns the caller’s effective policy after OAuth admission and policy application: role, device mode, opt-out exclusions and expiry. For mode selected the result reflects the live legacy per-device grants. Every request re-evaluates this before any handler or tool runs.

GET/v1/access
Authorization
AuthorizationBearer token (Clerk owner session) · headerrequired

Owner identity required.

or
AuthorizationBearer token (ol_agent token) · headerrequired

Owner-issued agent API connection; access ceiling and live device grants are checked separately.

or
AuthorizationBearer token (OAuth access token) · headerrequired

OAuth read/act scope is a ceiling. Scopes do not create device grants.

Responses
200

Successful response

dataEffectiveAccessrequired

The caller's effective current access: policy role and mode plus, for selected mode, the live legacy per-device grants.

Show properties
principalstringrequired
rolestring | nullrequired
Allowed:operatoradministratornull
modestring | null
Allowed:allselectednull
readOnlyboolean
excludedDevicesstring[]
excludedFunctionsobject[]
Show properties
Array of object
deviceIdstring | nullrequired
capabilitystringrequired
expiresAtinteger | null
delegatedFromstring
400

Invalid request or validation failure

errorobjectrequired
Show properties
codestringrequired
messagestring
issuesobject[]
Show properties
Array of object
pathstring
messagestring
401

Missing or invalid credential

errorobjectrequired
Show properties
codestringrequired
messagestring
issuesobject[]
Show properties
Array of object
pathstring
messagestring
403

Insufficient access or grant

errorobjectrequired
Show properties
codestringrequired
messagestring
issuesobject[]
Show properties
Array of object
pathstring
messagestring
404

Resource not found

errorobjectrequired
Show properties
codestringrequired
messagestring
issuesobject[]
Show properties
Array of object
pathstring
messagestring
413

Request body exceeds the 16 KiB limit

errorobjectrequired
Show properties
codestringrequired
messagestring
issuesobject[]
Show properties
Array of object
pathstring
messagestring
429

Rate limit or workspace capacity limit

errorobjectrequired
Show properties
codestringrequired
messagestring
issuesobject[]
Show properties
Array of object
pathstring
messagestring
500

Internal error

errorobjectrequired
Show properties
codestringrequired
messagestring
issuesobject[]
Show properties
Array of object
pathstring
messagestring
503

Service or required integration is not configured

errorobjectrequired
Show properties
codestringrequired
messagestring
issuesobject[]
Show properties
Array of object
pathstring
messagestring
Try it
Server
Authorization
Request
curl -X GET 'https://www.openlaunch.dev/v1/access' \
  -H 'Authorization: Bearer YOUR_TOKEN'
Response
{
  "data": {
    "principal": "string",
    "role": "operator",
    "mode": "all",
    "readOnly": true,
    "excludedDevices": [
      "string"
    ],
    "excludedFunctions": [
      {
        "deviceId": "string",
        "capability": "string"
      }
    ],
    "expiresAt": 0,
    "delegatedFrom": "string"
  }
}