---
title: "Return a list of all auth tokens (devices) that the user currently have logged in from."
method: GET
path: "/admin/users/{user_id}/auth-tokens"
tags: ["admin_users"]
---

# Return a list of all auth tokens (devices) that the user currently have logged in from.

`GET /admin/users/{user_id}/auth-tokens`

If you are running Grafana Enterprise and have Fine-grained access control enabled, you need to have a permission with action `users.authtoken:list` and scope `global.users:*`.

## Path parameters

- `user_id` integer, required

## Response `200`

(empty)

- UserToken[]
  - `AuthToken` string
  - `AuthTokenSeen` boolean
  - `ClientIp` string
  - `CreatedAt` integer
  - `ExternalSessionId` integer
  - `Id` integer
  - `PrevAuthToken` string
  - `RevokedAt` integer
  - `RotatedAt` integer
  - `SeenAt` integer
  - `UnhashedToken` string
  - `UpdatedAt` integer
  - `UserAgent` string
  - `UserId` integer

## Other responses

- `401` — UnauthorizedError is returned when the request is not authenticated.
- `403` — ForbiddenError is returned if the user/token has insufficient permissions to access the requested resource.
- `500` — InternalServerError is a general error indicating something went wrong internally.

---

[API](https://skmtc.net/grafana/apis/http-api.md) · [All operations](https://skmtc.net/grafana/apis/http-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/grafana/http-api/revisions/df55ba1718ba/schema)
