Me
The authenticated user: profile, application roles and the tenants they are a member of, with the user's access level and each tenant's modules; and what reaches them by email: their verification link, invitations to join tenants and connection links. Works identically with an API key (the key's owner) and a bearer token; a bearer token whose subject is new signs the user up on first use.
-
POST Verify Email AddressMarks an address verified from the emailed link, with no credentials: a user's own address, or with tenant that tenant's address. 204; 400 when the ad.../email-verifications
-
GET Get MeReturns the authenticated user: profile, application roles and the tenants they are a member of, each with the user's access level and the tenant's mo.../me
-
PUT Update MeReplaces the caller's editable profile fields: names, phone number and whether they manage several tenants. Returns the profile as GET does./me
-
POST Send My Email VerificationEmails the caller the link that verifies their email address (again). The link opens the web app./me/email-verification
-
PUT Claim My ConnectionFollows an emailed connection link: the pending connection's counterparty becomes the caller, so it is listed on the caller's tenants as sent to them .../me/connections/{connection}
-
GET List My InvitationsThe pending invitations sent to the caller's email address, oldest first./me/invitations
-
GET Get My InvitationThe invitation with the code from an emailed link, whatever its status and whoever it was sent to (the code is the secret). 404 for an unknown code./me/invitations/{invitation}
-
DELETE Decline My InvitationDeclines the invitation; the inviter is told. 404 for an unknown code; 409 when it is no longer pending./me/invitations/{invitation}
-
PUT Accept My InvitationAccepts the invitation for the caller, whichever address it was sent to: the caller becomes a member of the tenant with the offered access level, the .../me/invitations/{invitation}/membership