# API endpoint permissions

> Choose Read and Write grants and look up the permission ID for every supported API operation.

Audience: Administrators and integration developers

Canonical: https://shuffl-rebuild.vercel.app/docs/api-permissions

<a id="grants"></a>
## Choose exact grants

In Settings, search for a resource or operation, select Read or Write for a group, or expand it to pick individual endpoints. A minus means a partial selection. Grants don’t imply each other: users.list doesn’t grant users.get, units.save doesn’t grant units.list or units.archive, and Write never includes Read.

teams.current and permissions.list are always readable by an authenticated, authorized API key. Every other operation needs an exact grant plus current tenant, membership, role, employee-access and resource checks. The catalog can include operations your role or deployment doesn’t offer.

To see what you can grant and what you’ve been granted, use permissions.list in the SDK, GET /api/v1/permissions or shuffl permissions list --json. This reference lists operation definitions only.

- [Open API keys](https://shuffl-rebuild.vercel.app/app/manage/settings/api-keys)

- [OpenAPI input/output schemas and HTTP paths](https://shuffl-rebuild.vercel.app/api/v1/openapi.json)

<a id="lifecycle"></a>
## Revocation, replacement and delegation

Grants are fixed when a key is issued. To change them, create a replacement key and revoke the old one. Revocation and expiry also invalidate keys issued from it. New endpoints don’t become available to an existing key.

Creating a credential through the SDK, API or CLI takes permissions: ["users.list"]. A delegated issuer must hold credentials.api.create and every permission it grants, and the grants must fit within the parent and all its ancestors. Delegation goes at most three generations deep and can’t outlive its parent.

MCP access is the mcp.knowledge permission, checked by the MCP server rather than an HTTP endpoint. A key with credentials.api.create can delegate it only if it holds mcp.knowledge itself. API permissions don’t grant browser sign-in, provider OAuth consent or access to another workspace.

<a id="resource-access"></a>
## access

<a id="permission-access-get"></a>

### access.get

Read · Read one person's workspace role and app access

Exact permission: `access.get`. Underlying role scope: `access:read`.

<a id="permission-access-slackWaiting"></a>

### access.slackWaiting

Read · List Slack members waiting for access to Shuffl

Exact permission: `access.slackWaiting`. Underlying role scope: `access:read`.

<a id="permission-access-enableSlack"></a>

### access.enableSlack

Write · Give these Slack people employee access

Exact permission: `access.enableSlack`. Underlying role scope: `access:write`.

<a id="permission-access-save"></a>

### access.save

Write · Change employee product access

Exact permission: `access.save`. Underlying role scope: `access:write`.

<a id="permission-access-saveRole"></a>

### access.saveRole

Write · Change a member’s team role

Exact permission: `access.saveRole`. Underlying role scope: `access:write`.

<a id="resource-assistant"></a>
## assistant

<a id="permission-assistant-conversations"></a>

### assistant.conversations

Read · List your conversations with Mello

Exact permission: `assistant.conversations`. Underlying role scope: `assistant:read`.

<a id="permission-assistant-history"></a>

### assistant.history

Read · Read the messages in one of your conversations with Mello

Exact permission: `assistant.history`. Underlying role scope: `assistant:read`.

<a id="permission-assistant-delete"></a>

### assistant.delete

Write · Delete one of your conversations with Mello

Exact permission: `assistant.delete`. Underlying role scope: `assistant:write`.

<a id="permission-assistant-send"></a>

### assistant.send

Write · Ask Mello a question in a conversation

Exact permission: `assistant.send`. Underlying role scope: `assistant:write`.

<a id="permission-assistant-stop"></a>

### assistant.stop

Write · Stop an answer Mello is still writing

Exact permission: `assistant.stop`. Underlying role scope: `assistant:write`.

<a id="resource-badges"></a>
## badges

<a id="permission-badges-holders"></a>

### badges.holders

Read · List the people who hold a badge, as far as each lets you see

Exact permission: `badges.holders`. Underlying role scope: `users:read`.

<a id="permission-badges-list"></a>

### badges.list

Read · List the team’s badges, who holds them and any open requests you decide

Exact permission: `badges.list`. Underlying role scope: `users:read`.

<a id="permission-badges-ofPerson"></a>

### badges.ofPerson

Read · List a person's badges

Exact permission: `badges.ofPerson`. Underlying role scope: `users:read`.

<a id="permission-badges-settings"></a>

### badges.settings

Read · Read the badge suggestion settings

Exact permission: `badges.settings`. Underlying role scope: `praise:read`.

<a id="permission-badges-award"></a>

### badges.award

Write · Give a badge you own to a person

Exact permission: `badges.award`. Underlying role scope: `profile:write`.

<a id="permission-badges-claim"></a>

### badges.claim

Write · Claim a badge with its code

Exact permission: `badges.claim`. Underlying role scope: `profile:write`.

<a id="permission-badges-decideRequest"></a>

### badges.decideRequest

Write · Approve or decline a request for a badge

Exact permission: `badges.decideRequest`. Underlying role scope: `profile:write`.

<a id="permission-badges-generatePicture"></a>

### badges.generatePicture

Write · Draw an AI picture for a badge you own. Keeps a picture already set unless replace is true; idea says what to draw

Exact permission: `badges.generatePicture`. Underlying role scope: `profile:write`.

<a id="permission-badges-hideOwn"></a>

### badges.hideOwn

Write · Hide or show one of your badges on your profile

Exact permission: `badges.hideOwn`. Underlying role scope: `profile:write`.

<a id="permission-badges-request"></a>

### badges.request

Write · Ask for a badge

Exact permission: `badges.request`. Underlying role scope: `profile:write`.

<a id="permission-badges-revoke"></a>

### badges.revoke

Write · Take a badge back from a person

Exact permission: `badges.revoke`. Underlying role scope: `profile:write`.

<a id="permission-badges-save"></a>

### badges.save

Write · Create or edit a badge you own

Exact permission: `badges.save`. Underlying role scope: `profile:write`.

<a id="permission-badges-saveSettings"></a>

### badges.saveSettings

Write · Turn badge offers from praise on or off, and choose the launch channel

Exact permission: `badges.saveSettings`. Underlying role scope: `praise:write`.

<a id="permission-badges-setHidden"></a>

### badges.setHidden

Write · Hide or show a badge for the whole workspace

Exact permission: `badges.setHidden`. Underlying role scope: `users:write`.

<a id="permission-badges-uploadPicture"></a>

### badges.uploadPicture

Write · Set a badge picture from a PNG, JPEG or WebP picture sent as base64, for a badge you own

Exact permission: `badges.uploadPicture`. Underlying role scope: `profile:write`.

<a id="resource-celebrations"></a>
## celebrations

<a id="permission-celebrations-card"></a>

### celebrations.card

Read · Open a celebration card you can sign or were given

Exact permission: `celebrations.card`. Underlying role scope: `self:read`.

<a id="permission-celebrations-cards"></a>

### celebrations.cards

Read · List celebration cards to sign and cards you were given

Exact permission: `celebrations.cards`. Underlying role scope: `self:read`.

<a id="permission-celebrations-deliveries"></a>

### celebrations.deliveries

Read · List the celebration messages Shuffl sent

Exact permission: `celebrations.deliveries`. Underlying role scope: `celebrations:read`.

<a id="permission-celebrations-mine"></a>

### celebrations.mine

Read · List the celebrations you received

Exact permission: `celebrations.mine`. Underlying role scope: `self:read`.

<a id="permission-celebrations-preferences"></a>

### celebrations.preferences

Read · Read your birthday and work anniversary sharing preferences

Exact permission: `celebrations.preferences`. Underlying role scope: `self:read`.

<a id="permission-celebrations-preview"></a>

### celebrations.preview

Read · Preview a celebration message

Exact permission: `celebrations.preview`. Underlying role scope: `celebrations:read`.

<a id="permission-celebrations-program"></a>

### celebrations.program

Read · Read the Celebrations settings

Exact permission: `celebrations.program`. Underlying role scope: `celebrations:read`.

<a id="permission-celebrations-review"></a>

### celebrations.review

Read · Review upcoming birthdays and work anniversaries

Exact permission: `celebrations.review`. Underlying role scope: `celebrations:read`.

<a id="permission-celebrations-refresh"></a>

### celebrations.refresh

Write · Look for new birthdays and work anniversaries to celebrate now

Exact permission: `celebrations.refresh`. Underlying role scope: `celebrations:write`.

<a id="permission-celebrations-removeCardNote"></a>

### celebrations.removeCardNote

Write · Remove your note from this celebration card

Exact permission: `celebrations.removeCardNote`. Underlying role scope: `self:write`.

<a id="permission-celebrations-save"></a>

### celebrations.save

Write · Save celebration settings; enabling them schedules messages

Exact permission: `celebrations.save`. Underlying role scope: `celebrations:write`.

<a id="permission-celebrations-savePreferences"></a>

### celebrations.savePreferences

Write · Save your birthday and work anniversary sharing preferences

Exact permission: `celebrations.savePreferences`. Underlying role scope: `self:write`.

<a id="permission-celebrations-signCard"></a>

### celebrations.signCard

Write · Sign this celebration card with your note

Exact permission: `celebrations.signCard`. Underlying role scope: `self:write`.

<a id="resource-channels"></a>
## channels

<a id="permission-channels-list"></a>

### channels.list

Read · List available Slack channels

Exact permission: `channels.list`. Underlying role scope: `programs:read`.

<a id="resource-commands"></a>
## commands

<a id="permission-commands-get"></a>

### commands.get

Read · Read your own command receipt

Exact permission: `commands.get`. Underlying role scope: `null`.

<a id="resource-communities"></a>
## communities

<a id="permission-communities-channelSuggestions"></a>

### communities.channelSuggestions

Read · List Slack channels, with the ones that look like communities suggested

Exact permission: `communities.channelSuggestions`. Underlying role scope: `programs:read`.

<a id="permission-communities-createCapabilities"></a>

### communities.createCapabilities

Read · Read the current permission to create public or private community channels

Exact permission: `communities.createCapabilities`. Underlying role scope: `programs:read`.

<a id="permission-communities-list"></a>

### communities.list

Read · List communities with the members you may see

Exact permission: `communities.list`. Underlying role scope: `users:read`.

<a id="permission-communities-members"></a>

### communities.members

Read · List a community's members

Exact permission: `communities.members`. Underlying role scope: `users:read`.

<a id="permission-communities-ofPerson"></a>

### communities.ofPerson

Read · List the communities a person belongs to

Exact permission: `communities.ofPerson`. Underlying role scope: `users:read`.

<a id="permission-communities-archive"></a>

### communities.archive

Write · Archive a community

Exact permission: `communities.archive`. Underlying role scope: `profile:write`.

<a id="permission-communities-createSlackChannel"></a>

### communities.createSlackChannel

Write · Create an explicitly public or private Slack channel as an authorized community owner or administrator, retaining its request id across retries

Exact permission: `communities.createSlackChannel`. Underlying role scope: `programs:write`.

<a id="permission-communities-fromChannels"></a>

### communities.fromChannels

Write · Create one community per chosen Slack channel, as an administrator

Exact permission: `communities.fromChannels`. Underlying role scope: `programs:write`.

<a id="permission-communities-generateCover"></a>

### communities.generateCover

Write · Draw an AI cover for a community, as its owner, moderator or an administrator. Keeps a cover already set unless replace is true; idea says what to draw

Exact permission: `communities.generateCover`. Underlying role scope: `profile:write`.

<a id="permission-communities-invite"></a>

### communities.invite

Write · Invite selected people to a community as its owner or administrator; each person must accept

Exact permission: `communities.invite`. Underlying role scope: `profile:write`.

<a id="permission-communities-join"></a>

### communities.join

Write · Join a community

Exact permission: `communities.join`. Underlying role scope: `profile:write`.

<a id="permission-communities-leave"></a>

### communities.leave

Write · Leave a community

Exact permission: `communities.leave`. Underlying role scope: `profile:write`.

<a id="permission-communities-removeMember"></a>

### communities.removeMember

Write · Remove someone from a community, as its owner or moderator

Exact permission: `communities.removeMember`. Underlying role scope: `profile:write`.

<a id="permission-communities-revokeInvitation"></a>

### communities.revokeInvitation

Write · Revoke a pending community invitation as its owner or administrator

Exact permission: `communities.revokeInvitation`. Underlying role scope: `profile:write`.

<a id="permission-communities-save"></a>

### communities.save

Write · Create or edit a community, optionally tied to a Slack channel

Exact permission: `communities.save`. Underlying role scope: `profile:write`.

<a id="permission-communities-setVisibility"></a>

### communities.setVisibility

Write · Show or hide a community on your profile

Exact permission: `communities.setVisibility`. Underlying role scope: `profile:write`.

<a id="permission-communities-sync"></a>

### communities.sync

Write · Sync a community's members with its Slack channel now

Exact permission: `communities.sync`. Underlying role scope: `profile:write`.

<a id="permission-communities-uploadCover"></a>

### communities.uploadCover

Write · Set a community cover from a PNG, JPEG or WebP picture sent as base64, as its owner, moderator or an administrator

Exact permission: `communities.uploadCover`. Underlying role scope: `profile:write`.

<a id="resource-credentials-api"></a>
## credentials.api

<a id="permission-credentials-api-list"></a>

### credentials.api.list

Read · List the workspace's API keys and what each can do

Exact permission: `credentials.api.list`. Underlying role scope: `credentials:read`.

<a id="permission-credentials-api-create"></a>

### credentials.api.create

Write · Delegate a subset of this credential with bounded expiry and inherited revocation

Exact permission: `credentials.api.create`. Underlying role scope: `credentials:write`.

<a id="permission-credentials-api-revoke"></a>

### credentials.api.revoke

Write · Revoke an API key

Exact permission: `credentials.api.revoke`. Underlying role scope: `credentials:write`.

<a id="resource-digest"></a>
## digest

<a id="permission-digest-nudge"></a>

### digest.nudge

Read · Read one of Mello’s culture nudges

Exact permission: `digest.nudge`. Underlying role scope: `reports:read`.

<a id="permission-digest-nudges"></a>

### digest.nudges

Read · List Mello’s culture nudges for the workspace

Exact permission: `digest.nudges`. Underlying role scope: `reports:read`.

<a id="permission-digest-preview"></a>

### digest.preview

Read · Preview the HR digest for the last period

Exact permission: `digest.preview`. Underlying role scope: `reports:read`.

<a id="permission-digest-settings"></a>

### digest.settings

Read · Read the HR digest schedule

Exact permission: `digest.settings`. Underlying role scope: `team:read`.

<a id="permission-digest-actOnNudge"></a>

### digest.actOnNudge

Write · Record that a culture nudge was acted on and get where its action goes

Exact permission: `digest.actOnNudge`. Underlying role scope: `team:write`.

<a id="permission-digest-dismissNudge"></a>

### digest.dismissNudge

Write · Dismiss a culture nudge for 90 days

Exact permission: `digest.dismissNudge`. Underlying role scope: `team:write`.

<a id="permission-digest-saveSettings"></a>

### digest.saveSettings

Write · Save the HR digest schedule and admin channel

Exact permission: `digest.saveSettings`. Underlying role scope: `team:write`.

<a id="resource-exports"></a>
## exports

<a id="permission-exports-team"></a>

### exports.team

Read · Export the workspace's programs, people and introduction history

Exact permission: `exports.team`. Underlying role scope: `exports:read`.

<a id="resource-getStarted"></a>
## getStarted

<a id="permission-getStarted-celebration"></a>

### getStarted.celebration

Read · Read the first-action celebration waiting for you, if any

Exact permission: `getStarted.celebration`. Underlying role scope: `self:read`.

<a id="permission-getStarted-get"></a>

### getStarted.get

Read · Read your own Get started steps and whether the welcome still shows

Exact permission: `getStarted.get`. Underlying role scope: `self:read`.

<a id="permission-getStarted-celebrate"></a>

### getStarted.celebrate

Write · Record that a celebration was shown, shared or dismissed

Exact permission: `getStarted.celebrate`. Underlying role scope: `profile:write`.

<a id="permission-getStarted-dismiss"></a>

### getStarted.dismiss

Write · Hide the Get started card

Exact permission: `getStarted.dismiss`. Underlying role scope: `profile:write`.

<a id="permission-getStarted-draftIntro"></a>

### getStarted.draftIntro

Write · Draft a short hello to your coworkers with Mello; nothing is posted

Exact permission: `getStarted.draftIntro`. Underlying role scope: `profile:write`.

<a id="permission-getStarted-intro"></a>

### getStarted.intro

Write · Post your hello on Home, or skip it

Exact permission: `getStarted.intro`. Underlying role scope: `profile:write`.

<a id="permission-getStarted-wizard"></a>

### getStarted.wizard

Write · Record that you opened, finished or skipped the welcome

Exact permission: `getStarted.wizard`. Underlying role scope: `profile:write`.

<a id="resource-home"></a>
## home

<a id="permission-home-feed"></a>

### home.feed

Read · What happened to people you know, and who Mello thinks you should meet

Exact permission: `home.feed`. Underlying role scope: `self:read`.

<a id="permission-home-preferences"></a>

### home.preferences

Write · Choose how Home looks: cards or compact, stories, autoplay, For you

Exact permission: `home.preferences`. Underlying role scope: `profile:write`.

<a id="permission-home-react"></a>

### home.react

Write · Add or remove your emoji reaction on a Home moment

Exact permission: `home.react`. Underlying role scope: `profile:write`.

<a id="permission-home-story"></a>

### home.story

Write · Record Home stories you opened, sent a note from, or skipped

Exact permission: `home.story`. Underlying role scope: `profile:write`.

<a id="resource-hr"></a>
## hr

<a id="permission-hr-categories"></a>

### hr.categories

Read · Read the HR request categories and response target

Exact permission: `hr.categories`. Underlying role scope: `hr:read`.

<a id="permission-hr-get"></a>

### hr.get

Read · Read one HR request and its messages

Exact permission: `hr.get`. Underlying role scope: `hr:read`.

<a id="permission-hr-list"></a>

### hr.list

Read · List the HR requests you asked or can answer

Exact permission: `hr.list`. Underlying role scope: `hr:read`.

<a id="permission-hr-readiness"></a>

### hr.readiness

Read · Check whether HR requests have a destination and someone to answer them

Exact permission: `hr.readiness`. Underlying role scope: `hr:read`.

<a id="permission-hr-settings"></a>

### hr.settings

Read · Read the HR team name and who answers HR requests

Exact permission: `hr.settings`. Underlying role scope: `hr:read`.

<a id="permission-hr-shareSources"></a>

### hr.shareSources

Read · List your recent Mello conversations that an HR request can include

Exact permission: `hr.shareSources`. Underlying role scope: `hr:read`.

<a id="permission-hr-command"></a>

### hr.command

Write · Claim, release, reply to, note, categorize, resolve or reopen an HR request

Exact permission: `hr.command`. Underlying role scope: `hr:write`.

<a id="permission-hr-configure"></a>

### hr.configure

Write · Change the HR request destination

Exact permission: `hr.configure`. Underlying role scope: `hr:write`.

<a id="permission-hr-deliver"></a>

### hr.deliver

Write · Deliver your HR reply to the employee

Exact permission: `hr.deliver`. Underlying role scope: `hr:write`.

<a id="permission-hr-rebuildCategories"></a>

### hr.rebuildCategories

Write · Have Mello rebuild the HR request categories from published Knowledge

Exact permission: `hr.rebuildCategories`. Underlying role scope: `hr:write`.

<a id="permission-hr-renameTeam"></a>

### hr.renameTeam

Write · Rename the HR team employees send requests to

Exact permission: `hr.renameTeam`. Underlying role scope: `hr:write`.

<a id="permission-hr-retryDelivery"></a>

### hr.retryDelivery

Write · Retry HR request delivery

Exact permission: `hr.retryDelivery`. Underlying role scope: `hr:write`.

<a id="permission-hr-saveCategories"></a>

### hr.saveCategories

Write · Save the HR request categories, their owners and the response target

Exact permission: `hr.saveCategories`. Underlying role scope: `hr:write`.

<a id="permission-hr-share"></a>

### hr.share

Write · Share this request with the selected HR responders

Exact permission: `hr.share`. Underlying role scope: `hr:write`.

<a id="resource-identities"></a>
## identities

<a id="permission-identities-list"></a>

### identities.list

Read · List the Slack and web accounts linked to a person

Exact permission: `identities.list`. Underlying role scope: `identities:read`.

<a id="permission-identities-slackAccounts"></a>

### identities.slackAccounts

Read · List Slack accounts that can be linked to people

Exact permission: `identities.slackAccounts`. Underlying role scope: `identities:read`.

<a id="permission-identities-webAccounts"></a>

### identities.webAccounts

Read · List web accounts that can be linked to people

Exact permission: `identities.webAccounts`. Underlying role scope: `identities:read`.

<a id="permission-identities-linkSlack"></a>

### identities.linkSlack

Write · Link a verified Slack account

Exact permission: `identities.linkSlack`. Underlying role scope: `identities:write`.

<a id="permission-identities-linkWeb"></a>

### identities.linkWeb

Write · Link a verified web account

Exact permission: `identities.linkWeb`. Underlying role scope: `identities:write`.

<a id="permission-identities-unlink"></a>

### identities.unlink

Write · Revoke an employee identity link

Exact permission: `identities.unlink`. Underlying role scope: `identities:write`.

<a id="resource-integrations"></a>
## integrations

<a id="permission-integrations-authorize"></a>

### integrations.authorize

Read · Get the link that connects Slack, Google Drive or Notion to the workspace

Exact permission: `integrations.authorize`. Underlying role scope: `integrations:write`.

<a id="resource-invitations"></a>
## invitations

<a id="permission-invitations-candidates"></a>

### invitations.candidates

Read · List people in the directory who can be invited to the workspace

Exact permission: `invitations.candidates`. Underlying role scope: `access:read`.

<a id="permission-invitations-list"></a>

### invitations.list

Read · List pending workspace invitations

Exact permission: `invitations.list`. Underlying role scope: `access:read`.

<a id="permission-invitations-cancel"></a>

### invitations.cancel

Write · Cancel a pending workspace invitation

Exact permission: `invitations.cancel`. Underlying role scope: `access:write`.

<a id="permission-invitations-create"></a>

### invitations.create

Write · Invite this person with the selected team role

Exact permission: `invitations.create`. Underlying role scope: `access:write`.

<a id="permission-invitations-createMany"></a>

### invitations.createMany

Write · Invite these people with the selected team role

Exact permission: `invitations.createMany`. Underlying role scope: `access:write`.

<a id="permission-invitations-inviteDirectory"></a>

### invitations.inviteDirectory

Write · Invite everyone in the directory who is not invited yet

Exact permission: `invitations.inviteDirectory`. Underlying role scope: `access:write`.

<a id="resource-knowledge"></a>
## knowledge

<a id="permission-knowledge-context"></a>

### knowledge.context

Read · Read nearby approved passages

Exact permission: `knowledge.context`. Underlying role scope: `knowledge:read`.

<a id="permission-knowledge-search"></a>

### knowledge.search

Read · Search approved knowledge

Exact permission: `knowledge.search`. Underlying role scope: `knowledge:read`.

<a id="resource-knowledge-connections"></a>
## knowledge.connections

<a id="permission-knowledge-connections-browse"></a>

### knowledge.connections.browse

Read · List documents a connected Knowledge source can see

Exact permission: `knowledge.connections.browse`. Underlying role scope: `integrations:read`.

<a id="permission-knowledge-connections-list"></a>

### knowledge.connections.list

Read · List connected Knowledge providers

Exact permission: `knowledge.connections.list`. Underlying role scope: `integrations:read`.

<a id="permission-knowledge-connections-requests"></a>

### knowledge.connections.requests

Read · List requests to connect a Knowledge source

Exact permission: `knowledge.connections.requests`. Underlying role scope: `integrations:read`.

<a id="permission-knowledge-connections-connect"></a>

### knowledge.connections.connect

Write · Connect a Knowledge provider with a token

Exact permission: `knowledge.connections.connect`. Underlying role scope: `integrations:write`.

<a id="permission-knowledge-connections-disconnect"></a>

### knowledge.connections.disconnect

Write · Disconnect a knowledge provider

Exact permission: `knowledge.connections.disconnect`. Underlying role scope: `integrations:write`.

<a id="permission-knowledge-connections-request"></a>

### knowledge.connections.request

Write · Ask an administrator to connect a Knowledge source

Exact permission: `knowledge.connections.request`. Underlying role scope: `integrations:write`.

<a id="resource-knowledge-policies"></a>
## knowledge.policies

<a id="permission-knowledge-policies-coverage"></a>

### knowledge.policies.coverage

Read · Check which common HR policies Knowledge covers

Exact permission: `knowledge.policies.coverage`. Underlying role scope: `knowledge:manage`.

<a id="resource-knowledge-sources"></a>
## knowledge.sources

<a id="permission-knowledge-sources-get"></a>

### knowledge.sources.get

Read · Read a Knowledge source

Exact permission: `knowledge.sources.get`. Underlying role scope: `knowledge:manage`.

<a id="permission-knowledge-sources-history"></a>

### knowledge.sources.history

Read · List a Knowledge source's versions

Exact permission: `knowledge.sources.history`. Underlying role scope: `knowledge:manage`.

<a id="permission-knowledge-sources-list"></a>

### knowledge.sources.list

Read · List Knowledge sources

Exact permission: `knowledge.sources.list`. Underlying role scope: `knowledge:manage`.

<a id="permission-knowledge-sources-search"></a>

### knowledge.sources.search

Read · Search Knowledge sources by title

Exact permission: `knowledge.sources.search`. Underlying role scope: `knowledge:read`.

<a id="permission-knowledge-sources-archive"></a>

### knowledge.sources.archive

Write · Archive an unpublished knowledge source

Exact permission: `knowledge.sources.archive`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-sources-changeAudience"></a>

### knowledge.sources.changeAudience

Write · Change who can read this knowledge source

Exact permission: `knowledge.sources.changeAudience`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-sources-importConnected"></a>

### knowledge.sources.importConnected

Write · Import a document from a connected Knowledge source

Exact permission: `knowledge.sources.importConnected`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-sources-importWebsite"></a>

### knowledge.sources.importWebsite

Write · Import a website page into Knowledge for review

Exact permission: `knowledge.sources.importWebsite`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-sources-publish"></a>

### knowledge.sources.publish

Write · Publish this knowledge version to its audience

Exact permission: `knowledge.sources.publish`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-sources-refresh"></a>

### knowledge.sources.refresh

Write · Refresh a Knowledge source from its connected provider

Exact permission: `knowledge.sources.refresh`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-sources-restore"></a>

### knowledge.sources.restore

Write · Restore an archived knowledge source

Exact permission: `knowledge.sources.restore`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-sources-save"></a>

### knowledge.sources.save

Write · Save a Knowledge source draft

Exact permission: `knowledge.sources.save`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-sources-withdraw"></a>

### knowledge.sources.withdraw

Write · Withdraw a published Knowledge source

Exact permission: `knowledge.sources.withdraw`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-sources-write"></a>

### knowledge.sources.write

Write · Write a Knowledge page with Mello from its title and a request; nothing is saved

Exact permission: `knowledge.sources.write`. Underlying role scope: `knowledge:write`.

<a id="resource-knowledge-uploads"></a>
## knowledge.uploads

<a id="permission-knowledge-uploads-get"></a>

### knowledge.uploads.get

Read · Read the progress of a Knowledge file upload

Exact permission: `knowledge.uploads.get`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-uploads-appendPart"></a>

### knowledge.uploads.appendPart

Write · Upload the next part of a Knowledge file

Exact permission: `knowledge.uploads.appendPart`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-uploads-complete"></a>

### knowledge.uploads.complete

Write · Finish a Knowledge file upload and start reading it

Exact permission: `knowledge.uploads.complete`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-uploads-create"></a>

### knowledge.uploads.create

Write · Start uploading a file to Knowledge

Exact permission: `knowledge.uploads.create`. Underlying role scope: `knowledge:write`.

<a id="permission-knowledge-uploads-retry"></a>

### knowledge.uploads.retry

Write · Retry reading a Knowledge file that failed

Exact permission: `knowledge.uploads.retry`. Underlying role scope: `knowledge:write`.

<a id="resource-manager"></a>
## manager

<a id="permission-manager-current"></a>

### manager.current

Read · Read your own manager context

Exact permission: `manager.current`. Underlying role scope: `manager:read`.

<a id="resource-mcp"></a>
## mcp

<a id="permission-mcp-knowledge"></a>

### mcp.knowledge

Read · Connect an agent over MCP

Exact permission: `mcp.knowledge`. Underlying role scope: `knowledge:read`.

<a id="resource-network"></a>
## network

<a id="permission-network-mine"></a>

### network.mine

Read · Who you know and who you should meet

Exact permission: `network.mine`. Underlying role scope: `users:read`.

<a id="permission-network-ofPerson"></a>

### network.ofPerson

Read · People you and this person both know

Exact permission: `network.ofPerson`. Underlying role scope: `users:read`.

<a id="permission-network-orgChart"></a>

### network.orgChart

Read · Everyone in the team with their manager, for the org chart

Exact permission: `network.orgChart`. Underlying role scope: `users:read`.

<a id="permission-network-claim"></a>

### network.claim

Write · Say you know someone or would like to meet them

Exact permission: `network.claim`. Underlying role scope: `profile:write`.

<a id="resource-notifications"></a>
## notifications

<a id="permission-notifications-preferences"></a>

### notifications.preferences

Read · Read your notification preferences

Exact permission: `notifications.preferences`. Underlying role scope: `self:read`.

<a id="permission-notifications-save"></a>

### notifications.save

Write · Save a notification preference

Exact permission: `notifications.save`. Underlying role scope: `self:write`.

<a id="resource-onboarding"></a>
## onboarding

<a id="permission-onboarding-buddySuggestions"></a>

### onboarding.buddySuggestions

Read · Suggest coworkers who could be your onboarding buddy

Exact permission: `onboarding.buddySuggestions`. Underlying role scope: `self:read`.

<a id="permission-onboarding-candidates"></a>

### onboarding.candidates

Read · List people who could be enrolled in onboarding

Exact permission: `onboarding.candidates`. Underlying role scope: `onboarding:read`.

<a id="permission-onboarding-enrollmentPreview"></a>

### onboarding.enrollmentPreview

Read · Preview enrolling a new hire in onboarding

Exact permission: `onboarding.enrollmentPreview`. Underlying role scope: `onboarding:read`.

<a id="permission-onboarding-firstDaysCheckIns"></a>

### onboarding.firstDaysCheckIns

Read · Your open 30, 60 or 90-day or one-year new hire check-in

Exact permission: `onboarding.firstDaysCheckIns`. Underlying role scope: `self:read`.

<a id="permission-onboarding-firstDaysResults"></a>

### onboarding.firstDaysResults

Read · What new hires said in their first 90 days check-ins, combined

Exact permission: `onboarding.firstDaysResults`. Underlying role scope: `onboarding:read`.

<a id="permission-onboarding-mine"></a>

### onboarding.mine

Read · Read your own onboarding plan and buddy asks

Exact permission: `onboarding.mine`. Underlying role scope: `self:read`.

<a id="permission-onboarding-person"></a>

### onboarding.person

Read · Read a new hire's onboarding plan

Exact permission: `onboarding.person`. Underlying role scope: `onboarding:read`.

<a id="permission-onboarding-program"></a>

### onboarding.program

Read · Read the Onboarding program settings

Exact permission: `onboarding.program`. Underlying role scope: `onboarding:read`.

<a id="permission-onboarding-answerBuddyAsk"></a>

### onboarding.answerBuddyAsk

Write · Say yes or not now to being a new hire’s onboarding buddy

Exact permission: `onboarding.answerBuddyAsk`. Underlying role scope: `self:write`.

<a id="permission-onboarding-answerCheckIn"></a>

### onboarding.answerCheckIn

Write · Answer your onboarding program’s help check-in: all good, or ask HR for help

Exact permission: `onboarding.answerCheckIn`. Underlying role scope: `self:write`.

<a id="permission-onboarding-answerFirstDaysCheckIn"></a>

### onboarding.answerFirstDaysCheckIn

Write · Answer your new-hire check-in

Exact permission: `onboarding.answerFirstDaysCheckIn`. Underlying role scope: `self:write`.

<a id="permission-onboarding-approve"></a>

### onboarding.approve

Write · Approve these exact onboarding messages for sending

Exact permission: `onboarding.approve`. Underlying role scope: `onboarding:write`.

<a id="permission-onboarding-askBuddy"></a>

### onboarding.askBuddy

Write · Ask this coworker to be your onboarding buddy

Exact permission: `onboarding.askBuddy`. Underlying role scope: `self:write`.

<a id="permission-onboarding-assignBuddy"></a>

### onboarding.assignBuddy

Write · Assign an onboarding buddy to a new hire

Exact permission: `onboarding.assignBuddy`. Underlying role scope: `onboarding:write`.

<a id="permission-onboarding-enroll"></a>

### onboarding.enroll

Write · Enroll this person in onboarding

Exact permission: `onboarding.enroll`. Underlying role scope: `onboarding:write`.

<a id="permission-onboarding-previewEnrollment"></a>

### onboarding.previewEnrollment

Write · Preview the onboarding steps for a new hire

Exact permission: `onboarding.previewEnrollment`. Underlying role scope: `onboarding:write`.

<a id="permission-onboarding-remove"></a>

### onboarding.remove

Write · Remove a new hire from onboarding

Exact permission: `onboarding.remove`. Underlying role scope: `onboarding:write`.

<a id="permission-onboarding-respondBuddy"></a>

### onboarding.respondBuddy

Write · Accept or decline being an onboarding buddy

Exact permission: `onboarding.respondBuddy`. Underlying role scope: `self:write`.

<a id="permission-onboarding-retry"></a>

### onboarding.retry

Write · Retry a failed onboarding step

Exact permission: `onboarding.retry`. Underlying role scope: `onboarding:write`.

<a id="permission-onboarding-saveProgram"></a>

### onboarding.saveProgram

Write · Save the onboarding program and its messages

Exact permission: `onboarding.saveProgram`. Underlying role scope: `onboarding:write`.

<a id="permission-onboarding-update"></a>

### onboarding.update

Write · Change a new hire's onboarding start date or time zone

Exact permission: `onboarding.update`. Underlying role scope: `onboarding:write`.

<a id="resource-operations"></a>
## operations

<a id="permission-operations-activity"></a>

### operations.activity

Read · Read the workspace's recent audit activity

Exact permission: `operations.activity`. Underlying role scope: `operations:read`.

<a id="permission-operations-status"></a>

### operations.status

Read · Read the workspace delivery and provider health summary

Exact permission: `operations.status`. Underlying role scope: `operations:read`.

<a id="permission-operations-dispatchInbox"></a>

### operations.dispatchInbox

Write · Resume already-admitted team provider events and support delivery

Exact permission: `operations.dispatchInbox`. Underlying role scope: `operations:write`.

<a id="permission-operations-reconcile"></a>

### operations.reconcile

Write · Reconcile an externally verified delivery outcome

Exact permission: `operations.reconcile`. Underlying role scope: `operator:write`.

<a id="resource-permissions"></a>
## permissions

<a id="permission-permissions-list"></a>

### permissions.list

Read · Discover available and granted permissions

Intrinsic metadata permission; current authorization still applies.

<a id="resource-praise"></a>
## praise

<a id="permission-praise-composer"></a>

### praise.composer

Read · Read who you can praise, the praise channels and company values

Exact permission: `praise.composer`. Underlying role scope: `self:read`.

<a id="permission-praise-feed"></a>

### praise.feed

Read · Read the Praise feed

Exact permission: `praise.feed`. Underlying role scope: `self:read`.

<a id="permission-praise-insights"></a>

### praise.insights

Read · Read Praise totals by value (groups of seven or more)

Exact permission: `praise.insights`. Underlying role scope: `praise:read`.

<a id="permission-praise-mine"></a>

### praise.mine

Read · Read praise you gave and received

Exact permission: `praise.mine`. Underlying role scope: `self:read`.

<a id="permission-praise-ofPerson"></a>

### praise.ofPerson

Read · Read the public praise one person received

Exact permission: `praise.ofPerson`. Underlying role scope: `self:read`.

<a id="permission-praise-settings"></a>

### praise.settings

Read · Read the Praise settings

Exact permission: `praise.settings`. Underlying role scope: `praise:read`.

<a id="permission-praise-addChannel"></a>

### praise.addChannel

Write · Read praise from this Slack channel from now on

Exact permission: `praise.addChannel`. Underlying role scope: `praise:write`.

<a id="permission-praise-removeChannel"></a>

### praise.removeChannel

Write · Stop reading praise from a Slack channel

Exact permission: `praise.removeChannel`. Underlying role scope: `praise:write`.

<a id="permission-praise-saveSettings"></a>

### praise.saveSettings

Write · Save the Praise settings and company values

Exact permission: `praise.saveSettings`. Underlying role scope: `praise:write`.

<a id="permission-praise-send"></a>

### praise.send

Write · Praise coworkers in a praise channel

Exact permission: `praise.send`. Underlying role scope: `self:write`.

<a id="permission-praise-setDigest"></a>

### praise.setDigest

Write · Choose whether you get the daily Praise digest

Exact permission: `praise.setDigest`. Underlying role scope: `self:write`.

<a id="permission-praise-setHidden"></a>

### praise.setHidden

Write · Hide or show a praise you received

Exact permission: `praise.setHidden`. Underlying role scope: `self:write`.

<a id="resource-profiles"></a>
## profiles

<a id="permission-profiles-get"></a>

### profiles.get

Read · Read a person’s profile as this team sees it

Exact permission: `profiles.get`. Underlying role scope: `users:read`.

<a id="permission-profiles-whoKnows"></a>

### profiles.whoKnows

Read · Find coworkers who know about a topic, place or skill from what they share on their profiles, with the words that matched

Exact permission: `profiles.whoKnows`. Underlying role scope: `users:read`.

<a id="permission-profiles-draft"></a>

### profiles.draft

Write · Draft the empty parts of your own profile with Mello; nothing is saved

Exact permission: `profiles.draft`. Underlying role scope: `profile:write`.

<a id="permission-profiles-employeeNumber"></a>

### profiles.employeeNumber

Write · Set a person’s employee number to an unused number

Exact permission: `profiles.employeeNumber`. Underlying role scope: `users:write`.

<a id="permission-profiles-save"></a>

### profiles.save

Write · Save your own profile: pronouns, location, phone, bio, interests, links and what you are working on

Exact permission: `profiles.save`. Underlying role scope: `profile:write`.

<a id="permission-profiles-settings"></a>

### profiles.settings

Write · Choose who sees the optional parts of your own profile

Exact permission: `profiles.settings`. Underlying role scope: `profile:write`.

<a id="resource-profiles-cover"></a>
## profiles.cover

<a id="permission-profiles-cover-delete"></a>

### profiles.cover.delete

Write · Remove your profile cover picture

Exact permission: `profiles.cover.delete`. Underlying role scope: `profile:write`.

<a id="resource-profiles-photo"></a>
## profiles.photo

<a id="permission-profiles-photo-delete"></a>

### profiles.photo.delete

Write · Remove your profile photo

Exact permission: `profiles.photo.delete`. Underlying role scope: `profile:write`.

<a id="resource-profiles-positions"></a>
## profiles.positions

<a id="permission-profiles-positions-delete"></a>

### profiles.positions.delete

Write · Remove a past position from your profile

Exact permission: `profiles.positions.delete`. Underlying role scope: `profile:write`.

<a id="permission-profiles-positions-save"></a>

### profiles.positions.save

Write · Add or change a past position on your profile

Exact permission: `profiles.positions.save`. Underlying role scope: `profile:write`.

<a id="resource-programs"></a>
## programs

<a id="permission-programs-get"></a>

### programs.get

Read · Read a program

Exact permission: `programs.get`. Underlying role scope: `programs:read`.

<a id="permission-programs-list"></a>

### programs.list

Read · List programs

Exact permission: `programs.list`. Underlying role scope: `programs:read`.

<a id="permission-programs-options"></a>

### programs.options

Read · List program setting choices

Exact permission: `programs.options`. Underlying role scope: `programs:read`.

<a id="permission-programs-people"></a>

### programs.people

Read · List the people in a program and whether they take part

Exact permission: `programs.people`. Underlying role scope: `programs:read`.

<a id="permission-programs-preview"></a>

### programs.preview

Read · Preview matches without sending

Exact permission: `programs.preview`. Underlying role scope: `programs:read`.

<a id="permission-programs-schedulePreview"></a>

### programs.schedulePreview

Read · Preview a program's upcoming rounds

Exact permission: `programs.schedulePreview`. Underlying role scope: `programs:read`.

<a id="permission-programs-archive"></a>

### programs.archive

Write · Archive a program

Exact permission: `programs.archive`. Underlying role scope: `programs:write`.

<a id="permission-programs-create"></a>

### programs.create

Write · Create a program

Exact permission: `programs.create`. Underlying role scope: `programs:write`.

<a id="permission-programs-joinChannel"></a>

### programs.joinChannel

Write · Add Shuffl to this public Slack channel

Exact permission: `programs.joinChannel`. Underlying role scope: `programs:write`.

<a id="permission-programs-pause"></a>

### programs.pause

Write · Pause a program

Exact permission: `programs.pause`. Underlying role scope: `programs:write`.

<a id="permission-programs-resume"></a>

### programs.resume

Write · Activate a program and schedule

Exact permission: `programs.resume`. Underlying role scope: `programs:write`.

<a id="permission-programs-syncRoster"></a>

### programs.syncRoster

Write · Refresh channel membership

Exact permission: `programs.syncRoster`. Underlying role scope: `programs:write`.

<a id="permission-programs-update"></a>

### programs.update

Write · Update a program

Exact permission: `programs.update`. Underlying role scope: `programs:write`.

<a id="resource-pulse"></a>
## pulse

<a id="permission-pulse-actions"></a>

### pulse.actions

Read · List Pulse actions: what is being done about each result, its owner, due date and before and after

Exact permission: `pulse.actions`. Underlying role scope: `pulse:read`.

<a id="permission-pulse-asked"></a>

### pulse.asked

Read · List the Pulse questions asked so far

Exact permission: `pulse.asked`. Underlying role scope: `self:read`.

<a id="permission-pulse-audienceOptions"></a>

### pulse.audienceOptions

Read · List the departments and teams a Pulse question can be aimed at

Exact permission: `pulse.audienceOptions`. Underlying role scope: `pulse:read`.

<a id="permission-pulse-insights"></a>

### pulse.insights

Read · Read Pulse totals and trends (groups of seven or more)

Exact permission: `pulse.insights`. Underlying role scope: `pulse:read`.

<a id="permission-pulse-latestRead"></a>

### pulse.latestRead

Read · Read what stands out in a closed Pulse question’s result

Exact permission: `pulse.latestRead`. Underlying role scope: `pulse:read`.

<a id="permission-pulse-mine"></a>

### pulse.mine

Read · Read your own Pulse streak, how many took part, and what changed because of it

Exact permission: `pulse.mine`. Underlying role scope: `self:read`.

<a id="permission-pulse-program"></a>

### pulse.program

Read · Read the Pulse settings

Exact permission: `pulse.program`. Underlying role scope: `pulse:read`.

<a id="permission-pulse-proposals"></a>

### pulse.proposals

Read · List the Pulse questions Mello suggested that wait for approval

Exact permission: `pulse.proposals`. Underlying role scope: `pulse:read`.

<a id="permission-pulse-questionDetail"></a>

### pulse.questionDetail

Read · Read one closed Pulse question: its answer spread, every time it was asked, and results by group (groups of seven or more)

Exact permission: `pulse.questionDetail`. Underlying role scope: `pulse:read`.

<a id="permission-pulse-questions"></a>

### pulse.questions

Read · List the Pulse question library

Exact permission: `pulse.questions`. Underlying role scope: `pulse:read`.

<a id="permission-pulse-today"></a>

### pulse.today

Read · Read today’s Pulse question

Exact permission: `pulse.today`. Underlying role scope: `self:read`.

<a id="permission-pulse-addQuestion"></a>

### pulse.addQuestion

Write · Add a Pulse question to the library

Exact permission: `pulse.addQuestion`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-addTemplate"></a>

### pulse.addTemplate

Write · Add a Pulse question set from a template

Exact permission: `pulse.addTemplate`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-answer"></a>

### pulse.answer

Write · Answer today’s Pulse question as yourself

Exact permission: `pulse.answer`. Underlying role scope: `self:write`.

<a id="permission-pulse-createAction"></a>

### pulse.createAction

Write · Plan an action about a closed Pulse question, with an owner and a due date

Exact permission: `pulse.createAction`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-decideProposal"></a>

### pulse.decideProposal

Write · Approve a suggested Pulse question so it is asked next, or dismiss it

Exact permission: `pulse.decideProposal`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-editProposal"></a>

### pulse.editProposal

Write · Reword a suggested Pulse question before approving it

Exact permission: `pulse.editProposal`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-proposeQuestions"></a>

### pulse.proposeQuestions

Write · Save drafted Pulse questions as suggestions for HR to approve (never asked until approved)

Exact permission: `pulse.proposeQuestions`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-requestProposals"></a>

### pulse.requestProposals

Write · Ask Mello to suggest Pulse questions from recent results, optionally about a topic

Exact permission: `pulse.requestProposals`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-saveProgram"></a>

### pulse.saveProgram

Write · Save Pulse settings; enabling Pulse schedules questions to everyone

Exact permission: `pulse.saveProgram`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-setQuestionAudience"></a>

### pulse.setQuestionAudience

Write · Aim a Pulse question at departments, teams, managers or ICs

Exact permission: `pulse.setQuestionAudience`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-setQuestionStatus"></a>

### pulse.setQuestionStatus

Write · Retire or restore a Pulse question

Exact permission: `pulse.setQuestionStatus`. Underlying role scope: `pulse:write`.

<a id="permission-pulse-skip"></a>

### pulse.skip

Write · Skip today’s Pulse question

Exact permission: `pulse.skip`. Underlying role scope: `self:write`.

<a id="permission-pulse-updateAction"></a>

### pulse.updateAction

Write · Change a Pulse action’s wording, owner, due date or status

Exact permission: `pulse.updateAction`. Underlying role scope: `pulse:write`.

<a id="resource-reminders"></a>
## reminders

<a id="permission-reminders-mine"></a>

### reminders.mine

Read · Read your own Praise and Pulse reminder choices

Exact permission: `reminders.mine`. Underlying role scope: `self:read`.

<a id="permission-reminders-settings"></a>

### reminders.settings

Read · Read whether Praise and Pulse reminders are on, and their timing

Exact permission: `reminders.settings`. Underlying role scope: `team:read`.

<a id="permission-reminders-saveMine"></a>

### reminders.saveMine

Write · Change or turn off your own Praise or Pulse reminders

Exact permission: `reminders.saveMine`. Underlying role scope: `self:write`.

<a id="permission-reminders-saveSetting"></a>

### reminders.saveSetting

Write · Turn a Praise or Pulse reminder on or off, or change its timing

Exact permission: `reminders.saveSetting`. Underlying role scope: `team:write`.

<a id="resource-reports"></a>
## reports

<a id="permission-reports-answerFeedback"></a>

### reports.answerFeedback

Read · Read feedback on Mello's answers

Exact permission: `reports.answerFeedback`. Underlying role scope: `reports:read`.

<a id="permission-reports-connections"></a>

### reports.connections

Read · Read Connections insights

Exact permission: `reports.connections`. Underlying role scope: `reports:read`.

<a id="permission-reports-knowledge"></a>

### reports.knowledge

Read · Read Knowledge activity

Exact permission: `reports.knowledge`. Underlying role scope: `reports:read`.

<a id="permission-reports-knowledgeSource"></a>

### reports.knowledgeSource

Read · Read activity for one Knowledge source

Exact permission: `reports.knowledgeSource`. Underlying role scope: `reports:read`.

<a id="permission-reports-melloTrial"></a>

### reports.melloTrial

Read · What Mello handled during the trial, from day 25 of a trial until it ends

Exact permission: `reports.melloTrial`. Underlying role scope: `reports:read`.

<a id="permission-reports-melloValue"></a>

### reports.melloValue

Read · What Mello handled this week, this month and all time, with time saved once the team has set its minutes per question

Exact permission: `reports.melloValue`. Underlying role scope: `reports:read`.

<a id="permission-reports-needsYou"></a>

### reports.needsYou

Read · Read HR request and Knowledge draft insights

Exact permission: `reports.needsYou`. Underlying role scope: `reports:read`.

<a id="permission-reports-onboarding"></a>

### reports.onboarding

Read · Read Onboarding insights

Exact permission: `reports.onboarding`. Underlying role scope: `reports:read`.

<a id="permission-reports-overview"></a>

### reports.overview

Read · Read the workspace overview figures

Exact permission: `reports.overview`. Underlying role scope: `reports:read`.

<a id="permission-reports-people"></a>

### reports.people

Read · Read People insights: headcount, teams and growth

Exact permission: `reports.people`. Underlying role scope: `reports:read`.

<a id="resource-runs"></a>
## runs

<a id="permission-runs-details"></a>

### runs.details

Read · Read one introduction round and its pairs

Exact permission: `runs.details`. Underlying role scope: `runs:read`.

<a id="permission-runs-get"></a>

### runs.get

Read · Read a run status

Exact permission: `runs.get`. Underlying role scope: `runs:read`.

<a id="permission-runs-list"></a>

### runs.list

Read · List a program's introduction rounds

Exact permission: `runs.list`. Underlying role scope: `runs:read`.

<a id="permission-runs-dispatch"></a>

### runs.dispatch

Write · Dispatch this queued introduction run

Exact permission: `runs.dispatch`. Underlying role scope: `runs:write`.

<a id="permission-runs-request"></a>

### runs.request

Write · Request introductions from a preview

Exact permission: `runs.request`. Underlying role scope: `runs:write`.

<a id="permission-runs-retry"></a>

### runs.retry

Write · Retry introduction delivery

Exact permission: `runs.retry`. Underlying role scope: `runs:write`.

<a id="permission-runs-stopKnownFailures"></a>

### runs.stopKnownFailures

Write · Stop retrying known failed deliveries and advance the preserved monthly schedule

Exact permission: `runs.stopKnownFailures`. Underlying role scope: `runs:write`.

<a id="resource-runs-history"></a>
## runs.history

<a id="permission-runs-history-get"></a>

### runs.history.get

Read · Read one introduction round imported from the previous Shuffl

Exact permission: `runs.history.get`. Underlying role scope: `exports:read`.

<a id="permission-runs-history-list"></a>

### runs.history.list

Read · List introduction rounds imported from the previous Shuffl

Exact permission: `runs.history.list`. Underlying role scope: `exports:read`.

<a id="resource-support"></a>
## support

<a id="permission-support-get"></a>

### support.get

Read · Read one Shuffl support conversation

Exact permission: `support.get`. Underlying role scope: `support:read`.

<a id="permission-support-list"></a>

### support.list

Read · List the workspace's support conversations with Shuffl

Exact permission: `support.list`. Underlying role scope: `support:read`.

<a id="permission-support-assign"></a>

### support.assign

Write · Assign a Shuffl support conversation

Exact permission: `support.assign`. Underlying role scope: `support:write`.

<a id="permission-support-close"></a>

### support.close

Write · Close a Shuffl support conversation

Exact permission: `support.close`. Underlying role scope: `support:write`.

<a id="permission-support-create"></a>

### support.create

Write · Start a support conversation with Shuffl

Exact permission: `support.create`. Underlying role scope: `support:write`.

<a id="permission-support-reply"></a>

### support.reply

Write · Reply in a Shuffl support conversation

Exact permission: `support.reply`. Underlying role scope: `support:write`.

<a id="resource-sync"></a>
## sync

<a id="permission-sync-current"></a>

### sync.current

Read · Read the People sync provider, its last sync and what it found

Exact permission: `sync.current`. Underlying role scope: `integrations:read`.

<a id="permission-sync-connect"></a>

### sync.connect

Write · Connect a directory sync provider with the credential given

Exact permission: `sync.connect`. Underlying role scope: `integrations:write`.

<a id="permission-sync-disconnect"></a>

### sync.disconnect

Write · Disconnect this directory sync provider

Exact permission: `sync.disconnect`. Underlying role scope: `integrations:write`.

<a id="permission-sync-request"></a>

### sync.request

Write · Ask for a People sync provider Shuffl does not support yet

Exact permission: `sync.request`. Underlying role scope: `integrations:write`.

<a id="permission-sync-run"></a>

### sync.run

Write · Sync People from the connected provider now

Exact permission: `sync.run`. Underlying role scope: `integrations:write`.

<a id="resource-team"></a>
## team

<a id="permission-team-launchPost"></a>

### team.launchPost

Read · Read the launch announcement for the workspace

Exact permission: `team.launchPost`. Underlying role scope: `team:read`.

<a id="permission-team-answerMinutes"></a>

### team.answerMinutes

Write · Set the team estimate of minutes per HR question, used for time saved

Exact permission: `team.answerMinutes`. Underlying role scope: `team:write`.

<a id="permission-team-dismissLaunchPost"></a>

### team.dismissLaunchPost

Write · Dismiss the Tell your team what they can ask post on Today for everyone

Exact permission: `team.dismissLaunchPost`. Underlying role scope: `team:write`.

<a id="resource-teams"></a>
## teams

<a id="permission-teams-connectionPermissions"></a>

### teams.connectionPermissions

Read · List connections whose permissions are behind what Shuffl asks for

Exact permission: `teams.connectionPermissions`. Underlying role scope: `team:read`.

<a id="permission-teams-current"></a>

### teams.current

Read · Read this token’s team

Intrinsic metadata permission; current authorization still applies.

<a id="permission-teams-setup"></a>

### teams.setup

Read · Read the workspace's setup checklist

Exact permission: `teams.setup`. Underlying role scope: `team:read`.

<a id="permission-teams-slackChannels"></a>

### teams.slackChannels

Read · List community channels in the connected Slack and what each would become

Exact permission: `teams.slackChannels`. Underlying role scope: `integrations:read`.

<a id="permission-teams-slackJoinAccess"></a>

### teams.slackJoinAccess

Read · Read whether Slack members can join Shuffl on their own

Exact permission: `teams.slackJoinAccess`. Underlying role scope: `team:read`.

<a id="permission-teams-slackProfileLink"></a>

### teams.slackProfileLink

Read · Read the Shuffl profile link setting for Slack profiles

Exact permission: `teams.slackProfileLink`. Underlying role scope: `team:read`.

<a id="permission-teams-discardPairHistory"></a>

### teams.discardPairHistory

Write · Remove this staged past-intros report

Exact permission: `teams.discardPairHistory`. Underlying role scope: `integrations:write`.

<a id="permission-teams-initialize"></a>

### teams.initialize

Write · Finish setting up a new workspace

Exact permission: `teams.initialize`. Underlying role scope: `team:write`.

<a id="permission-teams-moveSlackChannels"></a>

### teams.moveSlackChannels

Write · Set up each channel in Shuffl: paused intros, praise and celebrations

Exact permission: `teams.moveSlackChannels`. Underlying role scope: `integrations:write`.

<a id="permission-teams-rename"></a>

### teams.rename

Write · Rename the workspace

Exact permission: `teams.rename`. Underlying role scope: `team:write`.

<a id="permission-teams-resendSlackWelcome"></a>

### teams.resendSlackWelcome

Write · Send the Slack install welcome to your own Slack DM again

Exact permission: `teams.resendSlackWelcome`. Underlying role scope: `integrations:write`.

<a id="permission-teams-saveAgentSetup"></a>

### teams.saveAgentSetup

Write · Choose the built-in assistant or an external agent for the workspace

Exact permission: `teams.saveAgentSetup`. Underlying role scope: `team:write`.

<a id="permission-teams-saveSlackJoinAccess"></a>

### teams.saveSlackJoinAccess

Write · Choose whether Slack members can join Shuffl on their own

Exact permission: `teams.saveSlackJoinAccess`. Underlying role scope: `team:write`.

<a id="permission-teams-saveSlackProfileLink"></a>

### teams.saveSlackProfileLink

Write · Turn the Shuffl profile link on Slack profiles on or off

Exact permission: `teams.saveSlackProfileLink`. Underlying role scope: `team:write`.

<a id="permission-teams-status"></a>

### teams.status

Write · Pause or resume the whole workspace

Exact permission: `teams.status`. Underlying role scope: `team:write`.

<a id="permission-teams-syncSlackProfileLinks"></a>

### teams.syncSlackProfileLinks

Write · Write the Shuffl profile link to every Slack profile again

Exact permission: `teams.syncSlackProfileLinks`. Underlying role scope: `team:write`.

<a id="permission-teams-uploadPairHistory"></a>

### teams.uploadPairHistory

Write · Stage this past-intros report for the switch; nothing changes until it is applied

Exact permission: `teams.uploadPairHistory`. Underlying role scope: `integrations:write`.

<a id="resource-timeOff"></a>
## timeOff

<a id="permission-timeOff-balances"></a>

### timeOff.balances

Read · Read your own time-off balances from the connected HR system

Exact permission: `timeOff.balances`. Underlying role scope: `self:read`.

<a id="resource-units"></a>
## units

<a id="permission-units-list"></a>

### units.list

Read · List the teams and departments in the People directory

Exact permission: `units.list`. Underlying role scope: `users:read`.

<a id="permission-units-archive"></a>

### units.archive

Write · Archive a team or department in the People directory

Exact permission: `units.archive`. Underlying role scope: `users:write`.

<a id="permission-units-save"></a>

### units.save

Write · Create or rename a team or department in the People directory

Exact permission: `units.save`. Underlying role scope: `users:write`.

<a id="resource-users"></a>
## users

<a id="permission-users-activity"></a>

### users.activity

Read · Read a person's recent activity in Shuffl

Exact permission: `users.activity`. Underlying role scope: `users:read`.

<a id="permission-users-blockedPairs"></a>

### users.blockedPairs

Read · List pairs of people who are never introduced

Exact permission: `users.blockedPairs`. Underlying role scope: `users:read`.

<a id="permission-users-details"></a>

### users.details

Read · Read one person's People directory record

Exact permission: `users.details`. Underlying role scope: `users:read`.

<a id="permission-users-filterOptions"></a>

### users.filterOptions

Read · List the teams, departments, managers and locations People can filter by

Exact permission: `users.filterOptions`. Underlying role scope: `users:read`.

<a id="permission-users-get"></a>

### users.get

Read · Read a person

Exact permission: `users.get`. Underlying role scope: `users:read`.

<a id="permission-users-list"></a>

### users.list

Read · List people

Exact permission: `users.list`. Underlying role scope: `users:read`.

<a id="permission-users-managerHistory"></a>

### users.managerHistory

Read · Read a person's recorded manager history

Exact permission: `users.managerHistory`. Underlying role scope: `users:read`.

<a id="permission-users-managers"></a>

### users.managers

Read · List the managers in the People directory

Exact permission: `users.managers`. Underlying role scope: `users:read`.

<a id="permission-users-page"></a>

### users.page

Read · List people in the People directory: search, or filter by team, department, manager, location, access or workspace role such as owner, admin or HR responder

Exact permission: `users.page`. Underlying role scope: `users:read`.

<a id="permission-users-participants"></a>

### users.participants

Read · List the people who take part in programs

Exact permission: `users.participants`. Underlying role scope: `users:read`.

<a id="permission-users-reportingLineProposal"></a>

### users.reportingLineProposal

Read · Read the reporting lines Mello proposed that wait for review

Exact permission: `users.reportingLineProposal`. Underlying role scope: `users:read`.

<a id="permission-users-assignManagers"></a>

### users.assignManagers

Write · Set the manager of several people at once

Exact permission: `users.assignManagers`. Underlying role scope: `users:write`.

<a id="permission-users-blockPair"></a>

### users.blockPair

Write · Stop two people from being introduced to each other

Exact permission: `users.blockPair`. Underlying role scope: `users:write`.

<a id="permission-users-participation"></a>

### users.participation

Write · Opt a person in to or out of a program

Exact permission: `users.participation`. Underlying role scope: `participation:write`.

<a id="permission-users-profile"></a>

### users.profile

Write · Edit a person's profile as an administrator

Exact permission: `users.profile`. Underlying role scope: `profile:write`.

<a id="permission-users-proposeReportingLines"></a>

### users.proposeReportingLines

Write · Ask Mello to propose managers for people without one; nothing changes until reviewed

Exact permission: `users.proposeReportingLines`. Underlying role scope: `users:write`.

<a id="permission-users-reviewReportingLines"></a>

### users.reviewReportingLines

Write · Approve chosen proposed reporting lines and close the proposal

Exact permission: `users.reviewReportingLines`. Underlying role scope: `users:write`.

<a id="permission-users-save"></a>

### users.save

Write · Change someone's People directory record as an administrator: name, job title, manager, team, department or start date

Exact permission: `users.save`. Underlying role scope: `users:write`.

## Related guides

- [Use the SDK and HTTP API](https://shuffl-rebuild.vercel.app/docs/sdk)

- [Use the Shuffl CLI](https://shuffl-rebuild.vercel.app/docs/cli)

- [Connect an MCP client](https://shuffl-rebuild.vercel.app/docs/mcp)

Agent documentation index: https://shuffl-rebuild.vercel.app/llms.txt

