---
title: "Company-assignable permission catalogue grouped by resource"
method: GET
path: "/api/permissions/catalog"
tags: ["Permissions"]
---

# Company-assignable permission catalogue grouped by resource

`GET /api/permissions/catalog`

Return the permission actions a company admin may assign, grouped by
resource for a frontend matrix. Hard-excludes system_admin and platform
(admin:*) actions. If this is near-empty, run scripts/map_endpoint_actions.py
--seed --apply to populate Z_Permissions with the derived action set.

## Headers

- `x-api-token` string, nullable

## Response `200`

Successful Response

- unknown

## Other responses

- `422` — Validation Error

---

[API](https://skmtc.dev/multigest/apis/multigest-protected-api.md) · [All operations](https://skmtc.dev/multigest/apis/multigest-protected-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/multigest/multigest-protected-api/revisions/4b44eb76b3ee/schema)
