---
title: "Get resource permissions for a specific user"
method: POST
path: "/api/user/resources_permissions"
tags: ["User Permissions"]
---

# Get resource permissions for a specific user

`POST /api/user/resources_permissions`

Retrieves resource permissions for a specified user (admin access required)

## Headers

- `X-EDH-USER` string, required
- `X-EDH-TOKEN` string, required

## Response `200`

User resource permissions retrieved successfully

- object
  - `success` boolean
  - `message` object
    - `user` string
    - `software_stacks` object[] — Virtual desktop software stacks (if requested)
    - `target_node_software_stacks` object[] — Target node software stacks (if requested)
    - `application_profiles` object[] — Application profiles (if requested)

## Other responses

- `400` — Missing required parameters
- `403` — Insufficient permissions
- `500` — Database error

## Changes

> 6 revisions in range; 3 could not be searched.

- **2026-04-21** (v1) `6db97cead8df` — 2 info
  - the endpoint scheme security `edhAuth AND edhToken` was added to the API
  - the endpoint scheme security `socaAuth AND socaToken` was removed from the API
- **2025-08-05** (v1) `55c07c16d2e1` — 2 breaking, 2 warning, 4 info
  - added the new required `header` request parameter `X-SOCA-TOKEN`
  - added the new required `header` request parameter `X-SOCA-USER`
  - deleted the `header` request parameter `X-EDH-TOKEN`
  - deleted the `header` request parameter `X-EDH-USER`
  - …4 more

[Change history](https://skmtc.dev/aws-samples/apis/engineering-development-hub-edh-api/changes/api/user/resources_permissions/post.md)

---

[API](https://skmtc.dev/aws-samples/apis/engineering-development-hub-edh-api.md) · [All operations](https://skmtc.dev/aws-samples/apis/engineering-development-hub-edh-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/aws-samples/engineering-development-hub-edh-api/revisions/058396b8f0f1/schema)
