Get a human-user enrollment
GET /v1/users/{userId}/enrollments/{enrollmentId}: Returns non-secret metadata for one current or historical enrollment.
Returns non-secret metadata for one current or historical enrollment. The target user is resolved before the enrollment, and MANAGE_USER_ENROLLMENT with ANY or EXACT authority on that user is required. Raw enrollment tokens are never returned.
In: header
Path Parameters
Human-user UUID
Enrollment UUID
Header Parameters
Optional waiting budget in milliseconds, measured from REST servlet ingress and shared across all internal gRPC calls. Supply one decimal integer from 1 to 86400000. Omission adds no deadline. Existing shorter deadlines still apply. Expiry returns HTTP 504 before streaming starts; after streaming starts, no successful completion event is sent. Use SSE or opt into GoodMem-Stream-Terminal for an explicit terminal outcome. Retrieval work is cooperatively cancelled. An accepted mutation may still commit after timeout or disconnect; a failed response does not imply rollback.
int641 <= value <= 86400000Response Body
curl -X GET "https://your-goodmem-server.example.com/v1/users/70e025f6-76ca-4cbe-b8fc-7dab8e84590a/enrollments/0198b9f4-c42f-7ae3-8c56-44d827ea03bd" \ -H "GoodMem-Timeout-Ms: 30000"{
"enrollmentId": "0198b9f4-c42f-7ae3-8c56-44d827ea03bd",
"userId": "70e025f6-76ca-4cbe-b8fc-7dab8e84590a",
"credentialPrefix": "gme_mzxw6y",
"status": "PENDING",
"expiresAt": 1786752000000,
"consumedApiKeyId": "550e8400-e29b-41d4-a716-446655440000",
"createdAt": 1786665600000,
"consumedAt": 1786669200000,
"revokedAt": 1786669200000,
"createdById": "b3303d0a-1a4a-493f-b9bf-38e37153b5a2",
"revokedById": "b3303d0a-1a4a-493f-b9bf-38e37153b5a2"
}Get user by username
GET /v1/users/username/{username}: Returns a user selected by exact username after applying READ_USER authority.
List a human user's enrollments
GET /v1/users/{userId}/enrollments: Returns one newest-first page containing pending, expired, consumed, and revoked enrollment metadata.