Remove a user from this company
Soft deletion ends this membership and revokes its grants and sessions. The global identity, other companies and historical documents/audit remain intact. Ended memberships cannot be edited or reactivated by the settings API. Supply the last read lockVersion as a query parameter. Company permission: `deleteCompanyUser`. Defaults: ADMIN. Current company role permissions and active membership are checked on every request; signed legacy role claims alone do not authorize this operation.
bearerAuthAuthorizationBearer <token>Obtained from POST /api/v1/auth/login, on the tenant's own subdomain. Presenting it on another tenant's subdomain is a 403.
id*stringuuidlockVersion*integerint32Membership ended, credentials revoked and removal audited
curl -X DELETE 'https://api.monetaryai.uz/api/v1/settings/users/497f6eca-6276-4993-bfeb-53cbbbba6f08?lockVersion=0'Read your own recent email delivery states GET
At most five registration/current-tenant magic receipts for the authenticated identity. No email query, provider identifiers, payloads or proofs. DELIVERED means mail-server acceptance, not inbox placement or mailbox existence. Only consumed recipient proof confirms ownership.
Read current effective API access GET
Returns the caller's live permission IDs for menu and action visibility. Does not expose other members, grant authority or replace server-side authorization. Own-profile, session and preference APIs remain independently self-scoped.