Returns the users (team members and API users) of your access token’s organization, newest first, in the standard list envelope (data + meta). Deleted users are excluded.
Auth: Authorization: Bearer <accessToken> — an organization-scoped token from Authentication.
Query parameters
limit (default 50, max 250) and cursor follow the shared pagination contract — see Pagination & filtering.
Filterable fields
Filters combine with each other (and with the organization scope) using AND.
In contains filters the comma is searched literally, and values below the minimum length return invalid_filter_value (400). Filtering on any other field returns invalid_filter_field (400).
Example
Response
Notes:
meta.total is the total record count for the current filter, independent of paging position; meta.cursor is the paging token for the next page and is omitted on the last page.
organization, branch and authBranches are plain id strings.
- Optional fields that have no value (
phone, branch, authBranches, opaqueId) are omitted — you will not receive null.
roles contains only public-facing roles; internal system roles are not listed, so an empty roles array does not mean the user has no role.
- Credentials and internal account settings are never returned.
- Use GET /v1/users/:id to load a single user.
Last modified on October 8, 2026