---
title: "Who this token acts as"
description: "The subject behind this credential: the user, their groups, and how the request arrived."
canonical: "https://gtable.app/docs/app-api/me/get"
updated: "2026-10-05"
---

# Who this token acts as

`GET https://your-suite.gtable.app/your-app/v1/me`

The subject behind this credential: the user, their groups, and how the request arrived.

> **Note: Generic contract**
>
> Your own version of this operation, with your tables and the fields you can read, is in
> your app's document: `https://{suite}.gtable.app/{app}/v1/openapi.json`, behind your credential.
> [Why each person gets their own](/docs/start/studio-and-runtime#why-an-app-has-an-api-of-its-own).

A key can never do more than the user who made it, and this is how you check which user that is.

Any valid credential for this API: no scope is needed. Operation `me.get`. MCP tool `me_get`. CLI, once published: `gtable me get`.
