Skip to content

The apps you have allowed

GET
/auth/account/consents
curl --request GET \
--url https://api.sloose.com/auth/account/consents \
--header 'Authorization: Bearer <token>'

Every grant you have given an MCP client, in every org: which app, which org, and your role there, which is what it acts at. Yours whatever your role — revoking one is yours too. Session only.

Your grants, newest first.

Media typeapplication/json
object
consents
required
Array<object>
object
id
required
string
clientId
required

The client’s id — for a Client ID Metadata Document client, the HTTPS URL of that document.

string
clientName
required
string | null
clientUri
required
string | null
org
required

The org the app was allowed into.

object
id
required
string
name
required
string | null
closed
required
boolean
role
required

Your role there now, which is what the app acts at. Null when you are no longer in the org: the grant does nothing while you are out of it, and would work again were you invited back.

string | null
Allowed values: operator builder admin owner
scopes
required
Array<string>
grantedAt
required
string
Example
{
"consents": [
{
"org": {
"role": "operator"
}
}
]
}

No bearer, or one that is expired, revoked or no longer resolves to a member.

Media typeapplication/json

The error envelope every non-2xx answer uses.

object
error
required

Human-readable explanation.

string
code

Machine-readable reason. Absent on a few legacy 400s.

string
key
additional properties
Examplegenerated
{
"error": "example",
"code": "example"
}

An API token was used (code: SESSION_REQUIRED), or the session is a staff member’s view of an org (code: STAFF_VIEW).

Media typeapplication/json

The error envelope every non-2xx answer uses.

object
error
required

Human-readable explanation.

string
code

Machine-readable reason. Absent on a few legacy 400s.

string
key
additional properties
Examplegenerated
{
"error": "example",
"code": "example"
}

Report a problem with this page