Skip to main content

Subject-access export (gdpr:admin, live mode only)

GET 

/api/v1/gdpr/access

Required scope: gdpr:admin. GDPR Art. 15: returns the company account's full subject-access snapshot — identical to the Company Portal privacy-page export (same shared core): user, company, products, audit trail, notifications, preferences, deletion-request history, AI consent, support tickets, signatures, API-key METADATA (never hashes or secrets), data requests and change logs. Categories cap at 10,000 rows with an explicit truncationWarning. Response is personal data: served Cache-Control: private, no-store.

Live mode only (403 CROSS_MODE_DENIED for sandbox keys).

Request

Responses

The subject-access snapshot.