---
title: "Get all users and [root roles](https://docs.getunleash.io/concepts/rbac#predefined-roles)"
method: GET
path: "/api/admin/user-admin"
tags: ["Users"]
---

# Get all users and [root roles](https://docs.getunleash.io/concepts/rbac#predefined-roles)

`GET /api/admin/user-admin`

Will return all users and all available root roles for the Unleash instance.

## Response `200`

usersSchema

- UsersSchema — Users and root roles
  - `users` UserSchema[], required — A list of users in the Unleash instance.
    - `id` integer, required — The user id
    - `name` string, nullable — Name of the user
    - `email` string — Email of the user
    - `username` string, nullable — A unique username for the user
    - `imageUrl` string — URL used for the user profile image
    - `inviteLink` string — If the user is actively inviting other users, this is the link that can be shared with other users
    - `loginAttempts` integer — How many unsuccessful attempts at logging in has the user made
    - `emailSent` boolean — Is the welcome email sent to the user or not
    - `rootRole` integer — Which [root role](https://docs.getunleash.io/concepts/rbac#predefined-roles) this user is assigned
    - `seenAt` string, date-time, nullable — The last time this user logged in
    - `createdAt` string, date-time — The user was created at this time
    - `accountType` 'User' | 'Service Account' — A user is either an actual User or a Service Account
    - `permissions` string[] — Deprecated
    - `scimId` string, nullable — The SCIM ID of the user, only present if managed by SCIM
    - `seatType` string, nullable — The seat type of this user
    - `companyRole` string, nullable — The role of the user within the company.
    - `productUpdatesEmailConsent` boolean, nullable — Whether the user has consented to receive product update emails.
    - `activeSessions` integer, nullable — Count of active browser sessions for this user
    - `deletedSessions` number — Experimental. The number of deleted browser sessions after last login
  - `rootRoles` RoleSchema[] — A list of [root roles](https://docs.getunleash.io/concepts/rbac#predefined-roles) in the Unleash instance.
    - `id` integer, required — The role id
    - `type` string, required — A role can either be a global root role (applies to all projects) or a project role
    - `name` string, required — The name of the role
    - `description` string — A more detailed description of the role and what use it's intended for
    - `project` string, nullable — What project the role belongs to

## Other responses

- `401` — Authorization information is missing or invalid. Provide a valid API token as the `authorization` header, e.g. `authorization:*.*.my-admin-token`.
- `403` — The provided user credentials are valid, but the user does not have the necessary permissions to perform this operation

---

[API](https://skmtc.net/unleash/apis/unleash-api-3.md) · [All operations](https://skmtc.net/unleash/apis/unleash-api-3/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/unleash/unleash-api-3/versions/b2c3116e633e/schema)
