Error
Roles
List roles
Requires roles:read. System roles first, each with its permissions and how many people hold it.
GET
Error
Authorizations
A staff session token, uk_st_…. Minted by sign-up, sign-in or the two-factor exchange.
Headers
The organization the caller is acting on — the org_… code that appears in the panel URL. It identifies; the membership JOIN is what authorizes, so a forged code reads nothing. Absent, the session's default organization answers.
Response
The roles.