curl --request POST \
--url https://api.getcargo.io/v1/workspaceManagement/users/permissions \
--header 'Authorization: Bearer <token>' \
--header 'Content-Type: application/json' \
--data '
{
"userUuids": [
"<string>"
],
"resourceUuid": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"emails": [
"<string>"
]
}
'import requests
url = "https://api.getcargo.io/v1/workspaceManagement/users/permissions"
payload = {
"userUuids": ["<string>"],
"resourceUuid": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"emails": ["<string>"]
}
headers = {
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'},
body: JSON.stringify({
userUuids: ['<string>'],
resourceUuid: '3c90c3cc-0d44-4b50-8888-8dd25736052a',
emails: ['<string>']
})
};
fetch('https://api.getcargo.io/v1/workspaceManagement/users/permissions', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://api.getcargo.io/v1/workspaceManagement/users/permissions",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'userUuids' => [
'<string>'
],
'resourceUuid' => '3c90c3cc-0d44-4b50-8888-8dd25736052a',
'emails' => [
'<string>'
]
]),
CURLOPT_HTTPHEADER => [
"Authorization: Bearer <token>",
"Content-Type: application/json"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://api.getcargo.io/v1/workspaceManagement/users/permissions"
payload := strings.NewReader("{\n \"userUuids\": [\n \"<string>\"\n ],\n \"resourceUuid\": \"3c90c3cc-0d44-4b50-8888-8dd25736052a\",\n \"emails\": [\n \"<string>\"\n ]\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("Authorization", "Bearer <token>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://api.getcargo.io/v1/workspaceManagement/users/permissions")
.header("Authorization", "Bearer <token>")
.header("Content-Type", "application/json")
.body("{\n \"userUuids\": [\n \"<string>\"\n ],\n \"resourceUuid\": \"3c90c3cc-0d44-4b50-8888-8dd25736052a\",\n \"emails\": [\n \"<string>\"\n ]\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://api.getcargo.io/v1/workspaceManagement/users/permissions")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["Authorization"] = 'Bearer <token>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"userUuids\": [\n \"<string>\"\n ],\n \"resourceUuid\": \"3c90c3cc-0d44-4b50-8888-8dd25736052a\",\n \"emails\": [\n \"<string>\"\n ]\n}"
response = http.request(request)
puts response.read_body{}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}Upsert user permissions
Grant permissions on a resource to users (POST /workspaceManagement/users/permissions).
curl --request POST \
--url https://api.getcargo.io/v1/workspaceManagement/users/permissions \
--header 'Authorization: Bearer <token>' \
--header 'Content-Type: application/json' \
--data '
{
"userUuids": [
"<string>"
],
"resourceUuid": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"emails": [
"<string>"
]
}
'import requests
url = "https://api.getcargo.io/v1/workspaceManagement/users/permissions"
payload = {
"userUuids": ["<string>"],
"resourceUuid": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"emails": ["<string>"]
}
headers = {
"Authorization": "Bearer <token>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {Authorization: 'Bearer <token>', 'Content-Type': 'application/json'},
body: JSON.stringify({
userUuids: ['<string>'],
resourceUuid: '3c90c3cc-0d44-4b50-8888-8dd25736052a',
emails: ['<string>']
})
};
fetch('https://api.getcargo.io/v1/workspaceManagement/users/permissions', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://api.getcargo.io/v1/workspaceManagement/users/permissions",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'userUuids' => [
'<string>'
],
'resourceUuid' => '3c90c3cc-0d44-4b50-8888-8dd25736052a',
'emails' => [
'<string>'
]
]),
CURLOPT_HTTPHEADER => [
"Authorization: Bearer <token>",
"Content-Type: application/json"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://api.getcargo.io/v1/workspaceManagement/users/permissions"
payload := strings.NewReader("{\n \"userUuids\": [\n \"<string>\"\n ],\n \"resourceUuid\": \"3c90c3cc-0d44-4b50-8888-8dd25736052a\",\n \"emails\": [\n \"<string>\"\n ]\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("Authorization", "Bearer <token>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://api.getcargo.io/v1/workspaceManagement/users/permissions")
.header("Authorization", "Bearer <token>")
.header("Content-Type", "application/json")
.body("{\n \"userUuids\": [\n \"<string>\"\n ],\n \"resourceUuid\": \"3c90c3cc-0d44-4b50-8888-8dd25736052a\",\n \"emails\": [\n \"<string>\"\n ]\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://api.getcargo.io/v1/workspaceManagement/users/permissions")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["Authorization"] = 'Bearer <token>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"userUuids\": [\n \"<string>\"\n ],\n \"resourceUuid\": \"3c90c3cc-0d44-4b50-8888-8dd25736052a\",\n \"emails\": [\n \"<string>\"\n ]\n}"
response = http.request(request)
puts response.read_body{}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}{
"errorMessage": "<string>",
"reason": "<string>"
}Authorizations
API token from cargo-ai login. Send as Authorization: Bearer <token>.
Headers
Client-generated key that makes this write safe to retry. Reusing the same key with the same request returns the original response instead of creating a second record. Reusing it with a different request returns 422. A concurrent retry while the first request is still running returns 409. Keys expire after 24 hours. Not accepted on multipart file uploads. Optional: a request without one is processed as it always was.
255"8e03978e-40d5-43e8-bc93-6894a57f9324"
Body
- Request body
- Request body
Request body schema.
Users to grant the permission to.
Permission action to grant.
ai:*, ai:read, ai:write, ai:agent:*, ai:agent:read, ai:agent:write, ai:mcpServer:*, ai:mcpServer:read, ai:mcpServer:write, billing:*, billing:read, billing:write, connection:*, connection:read, connection:write, context:*, context:read, context:write, domainManagement:*, domainManagement:read, domainManagement:write, hosting:*, hosting:read, hosting:write, hosting:app:*, hosting:app:read, hosting:app:write, hosting:worker:*, hosting:worker:read, hosting:worker:write, mailboxManagement:*, mailboxManagement:read, mailboxManagement:write, observability:*, observability:read, observability:write, orchestration:*, orchestration:read, orchestration:write, orchestration:workflow:*, orchestration:workflow:read, orchestration:workflow:write, revenueOrganization:*, revenueOrganization:read, revenueOrganization:write, segmentation:*, segmentation:read, segmentation:write, storage:*, storage:read, storage:write, content:*, content:read, content:write, content:file:*, content:file:read, content:file:write, systemOfRecordIntegration:*, systemOfRecordIntegration:read, systemOfRecordIntegration:write, workspaceManagement:*, workspaceManagement:read, workspaceManagement:write, workspaceManagement:folder:*, workspaceManagement:folder:read, workspaceManagement:folder:write Resource the permission applies to.
^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-4[0-9a-fA-F]{3}-[89abAB][0-9a-fA-F]{3}-[0-9a-fA-F]{12})$Emails of users to grant the permission to. Creates workspace users as needed.
Response
Upsert user permissions
The response is of type object.
Was this page helpful?

