---
title: "List a user's delegations"
method: GET
path: "/users/{id}/oauth_delegations"
tags: ["Users"]
---

# List a user's delegations

`GET /users/{id}/oauth_delegations`

Get a list of OAuth delegations for a specific user.

This endpoint replaces the deprecated `/users/{id}/sessions` endpoint.

**Required OAuth Scope:** For Scoped OAuth requests, this operation requires the `oauth_delegations.read` scope.

Scoped OAuth requires: `oauth_delegations.read`

## Path parameters

- `id` string, required

## Query parameters

- `delegation_type` 'mobile' | 'web' | 'integration'
- `status` 'issued' | 'revoked'
- `limit` integer
- `cursor` string

## Headers

- `Accept` string, required
- `Content-Type` 'application/json', required

## Response `200`

Delegations retrieved sucessfully

- UserOAuthDelegations
  - `oauth_delegations` OAuthDelegation[], required — Array of OAuth delegation objects
    - `id` string, required — The unique identifier for the delegation
    - `status` 'issued' | 'revoked', required — The current status of the delegation
    - `client_id` string, required — The OAuth client ID
    - `delegation_type` 'web' | 'mobile' | 'integration', required — The type of delegation
    - `scope` string, required — The OAuth scopes granted
    - `created_at` string, date-time, required — When the delegation was created (ISO 8601 format)
    - `expires_at` string, date-time, required — When the delegation expires (ISO 8601 format)
    - `self` string, uri, required — URL to retrieve this delegation in detail
  - `limit` integer, required — Number of results per page
  - `more` boolean, required — Whether there are more results available
  - `next_cursor` string — Cursor for retrieving the next page (only present when more is true)

## Other responses

- `400` — Caller provided invalid arguments. Please review the response for error details. Retrying with the same arguments will *not* work.
- `401` — Caller did not supply credentials or did not provide the correct credentials. If you are using an API key, it may be invalid or your Authorization header may be malformed.
- `402` — Account does not have the abilities to perform the action. Please review the response for the required abilities. You can also use the [Abilities API](#resource_Abilities) to determine what features are available to your account.
- `403` — Caller is not authorized to view the requested resource. While your authentication is valid, the authenticated user or token does not have permission to perform this action.
- `404` — The requested resource was not found.
- `429` — Too many requests have been made, the rate limit has been reached.
- `500` — Internal Server Error the PagerDuty server experienced an error.

---

[API](https://skmtc.net/pagerduty/apis/rest-api.md) · [All operations](https://skmtc.net/pagerduty/apis/rest-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/pagerduty/rest-api/versions/b679a8f3f02c/schema)
