Skip to main content
GET
Error

Autorizaciones

Authorization
string
header
requerido

Bearer authentication. Send Authorization: Bearer .

Parámetros de ruta

id
string
requerido

User ID

Respuesta

OK

UserResponse payload

countryCode
string
Ejemplo:

"BR"

email
string
Ejemplo:

"john@example.com"

firstName
string
Ejemplo:

"John"

groups
string[]
id
string
Ejemplo:

"123e4567-e89b-12d3-a456-426614174000"

lastName
string
Ejemplo:

"Doe"

mfa
object | null

The member's MFA status. NULLABLE, and the null is meaningful — this field is tri-state and a consumer MUST handle all three:

null is NOT "no MFA". It means the authoritative per-member read did not complete — Casdoor was unavailable, the row was skipped, or the listing's enrichment budget expired. Reporting those as enabled=false would tell an administrator that a possibly-protected member is unprotected, so they are reported honestly as unknown instead. Render null as "unknown", never as "off", and never dereference without a null check: user.mfa.enabled throws exactly when Casdoor is degraded, which is the worst moment to throw.

Single-user reads (GET /v1/users/{id}) always populate it — the read that would have failed is the request itself. Only the member LISTING can return null; see enrichUsersWithMFAStatus in internal/services/user_mfa_enrichment.go.

Carries no secrets — only enablement flags, methods and the preferred type.

Ejemplo:
phone
string
Ejemplo:

5511998888777

username
string
Ejemplo:

"johndoe"