---
title: "Get policy list"
method: GET
path: "/api/policy-engine/policies"
tags: ["Policy"]
---

# Get policy list

`GET /api/policy-engine/policies`

Retrieves a list of all policies in the account and general information of each policy.

## Permissions

Any user or [application key](https://developers.vtex.com/docs/guides/api-authentication-using-application-keys) must have at least one of the appropriate [License Manager resources](https://help.vtex.com/en/tutorial/license-manager-resources--3q6ztrC8YynQf6rdc6euk3) to be able to successfully run this request. Otherwise they will receive a status code `403` error. These are the applicable resources for this endpoint:

| **Product** | **Category** | **Resource** |
| --------------- | ----------------- | ----------------- |
| Promotions Policy Engine | Policies | **List Policies** |

There are no applicable [predefined roles](https://help.vtex.com/en/tutorial/predefined-roles--jGDurZKJHvHJS13LnO7Dy) for this resource list. You must [create a custom role](https://help.vtex.com/en/tutorial/roles--7HKK5Uau2H6wxE1rH5oRbc#creating-a-role) and add at least one of the resources above in order to use this endpoint.To learn more about machine authentication at VTEX, see [Authentication overview](https://developers.vtex.com/docs/guides/authentication).

>❗ To prevent integrations from having excessive permissions, consider the [best practices for managing app keys](https://help.vtex.com/en/tutorial/best-practices-application-keys--7b6nD1VMHa49aI5brlOvJm) when assigning License Manager roles to integrations.

## Headers

- `Content-Type` string, required
- `Accept` string, required

## Response `200`

OK

- PolicyGetResponse[]
  - `id` string — Policy ID.
  - `name` string — Policy name.
  - `description` string — Policy description. This description is only for internal use of identification.
  - `statements` StatementGetResponse[] — Requirements to the policy be applied.
    - `effect` string, required — This field is not functional at the moment. To create a correct request, fill the field with `Allow`.
    - `actions` unknown[] — Actions that the policy will execute.
      - unknown
    - `resource` string — Scope on which this policy must be evaluated.
    - `condition` object — Condition to activate this policy. This object can have a maximum of ten recursive conditions.
      - `conditions` object[] — List of conditions that will activate the policy.
        - `conditions` string[] — These are the conditions the actions can have. The possible values are `[]`, `stringEquals`, and `numericGreaterThan`.
        - `operation` string — The action of the condition. This operation possible values are `None`, `stringEquals`, `stringEqualsIgnoreCase`, `numericEquals`, `numericLessThan`, `numericLessThanEquals`, `numericGreaterThan`, `numericGreaterThanEquals`, `bool`, `not`, `or`, `and`, `dateTimeUtcGreaterThan`, `dateTimeUtcLessThan`, and `between`.
        - `key` string — The element that will define what the policy will influence. This field has the possible values `skuId`, `brandId`, `discountPercentage`.
        - `values` string[] — Array with values of the key.
    - `operation` string — This operation will determine if all the conditions need to be valid or at least one of them, if the conditions array is not empty. The possible values to these fields are `None`, `stringEquals`, `stringEqualsIgnoreCase`, `numericEquals`, `numericLessThan`, `numericLessThanEquals`, `numericGreaterThan`, `numericGreaterThanEquals`, `bool`, `not`, `or`, `and`, `dateTimeUtcGreaterThan`, `dateTimeUtcLessThan`, and `between`.

---

[API](https://skmtc.dev/vtex/apis/policies-system-api.md) · [All operations](https://skmtc.dev/vtex/apis/policies-system-api/llms.txt) · [OpenAPI document](https://skmtc.dev/vtex/apis/policies-system-api/revisions/b22e08bf4fb5?raw)
