List company users for the settings table
Bounded page with company display name, immutable login email, role codes, ACTIVE/SUSPENDED status, last login and lockVersion. ENDED memberships are hidden but retained for audit. Search matches literal name/email substrings; role and status filters are optional. Add a user through the recipient-bound invitation API, never by setting another person's password. Company permission: `listCompanyUsers`. Defaults: ADMIN. Current company role permissions and active membership are checked on every request; signed legacy role claims alone do not authorize this operation.
bearerAuthAuthorizationBearer <token>Obtained from POST /api/v1/auth/login, on the tenant's own subdomain. Presenting it on another tenant's subdomain is a 403.
page?integerint320size?integerint3250query?stringrole?stringstatus?stringFiltered company user page
*/*- response
items?array<>page?integerint32size?integerint32totalElements?integerint64curl -X GET 'https://api.monetaryai.uz/api/v1/settings/users'{ "items": [ { "contactEmail": "string", "displayName": "string", "email": "string", "id": "497f6eca-6276-4993-bfeb-53cbbbba6f08", "lastLogin": "2019-08-24T14:15:22Z", "lockVersion": 0, "roles": [ "string" ], "status": "string", "userId": "2c4a230c-5085-4924-a3e1-25fb4fc5965b" } ], "page": 0, "size": 0, "totalElements": 0}Read one company role GET
Returns effective permission IDs and the current lockVersion for one of the four company defaults. Company permission: `getCompanyRole`. Defaults: ADMIN. Current company role permissions and active membership are checked on every request; signed legacy role claims alone do not authorize this operation.
Read one company user GET
Returns one visible membership with local display name, immutable login email, roles, status, last login and lockVersion. Company permission: `getCompanyUser`. Defaults: ADMIN. Current company role permissions and active membership are checked on every request; signed legacy role claims alone do not authorize this operation.