---
title: "Role"
url: "https://dev.4hse.com/api/role"
---

# Role

A **Role** represents a safety organization role defined in an office. Examples: safety officer (RSPP), workers’ safety representative (RLS), fire warden, first aid officer, supervisor.

Belongs to an office. People are assigned to roles via EntityEmployee. A role can be subject to check actions on the compliance schedule (ActionSubscription with `subscriber_type: ROLE`).

Use this API to:

-   Define the safety organization roles for an office
-   Get the `office_role_id` needed to create compliance schedule entries or certificates
-   Browse the roles of an office (filter by `office_id`)

Supports historicization.

Version

2.0.0

OpenAPI version

3.0.0

## Authentication

[Section titled “ Authentication ”](#authentication)

### OAuth2

[Section titled “OAuth2 ”](#oauth2)

**Security scheme type:** oauth2

**Flow type:** password

**Token URL:** [https://auth.4hse.com/realms/4hse/protocol/openid-connect/token](https://auth.4hse.com/realms/4hse/protocol/openid-connect/token)

### AccessToken

[Section titled “AccessToken ”](#accesstoken)

**Security scheme type:** apiKey

**Query parameter name:** access-token

## Operations

[Section titled “Operations”](#operations)

### index

[Section titled “index”](#operation-indexRole-post)

POST

/v2/role/index

-   

Returns a paginated list of roles.

Most useful filters:

-   `office_id`: all roles in a specific office
-   `name`: search by role name

## Authorizations

[Section titled “Authorizations ”](#authorizations)

-   **[OAuth2](/api/role/#oauth2)**
-   **[AccessToken](/api/role/#accesstoken)**

#### Request Body

[Section titled “Request Body ”](#request-body)

Parameters for searching roles

Select media typeapplication/json

object

**filter**

object

**office\_role\_id**

Unique identifier. Used as `subscriber_id` (ROLE) or `resource_id`.

string format: uuid

**office\_id**

string format: uuid

**project\_id**

string format: uuid

**code**

string

**name**

string

**description**

string

**office\_name**

Name of the office.

string

**project\_name**

Name of the project.

string

**project\_type**

string

Allowed values: safety template

**owned\_active**

Whether this role is currently active.

boolean

nullable

**parent\_active**

Whether the parent office is currently active.

boolean

nullable

**per-page**

integer

default: 100 \>= 1

**page**

integer

default: 1 \>= 1

**sort**

string

Allowed values: code name office\_name project\_name

**history**

If true, includes historicized entries.

boolean

##### Example

```
{  "filter": {    "office_id": "a1b2c3d4-e5f6-7890-abcd-ef1234567890"  },  "per-page": 20,  "page": 1,  "sort": "name"}
```

#### Responses

[Section titled “ Responses ”](#responses)

##### 200

[Section titled “200 ”](#200)

List of roles

Select media typeapplication/json

Array<object>

object

**office\_role\_id**

Unique identifier. Used as `subscriber_id` (ROLE) or `resource_id`.

string format: uuid

**office\_id**

string format: uuid

**project\_id**

string format: uuid

**code**

string

**name**

string

**description**

string

**office\_name**

Name of the office.

string

**project\_name**

Name of the project.

string

**project\_type**

string

Allowed values: safety template

**owned\_active**

Whether this role is currently active.

boolean

nullable

**parent\_active**

Whether the parent office is currently active.

boolean

nullable

#### Headers

[Section titled “Headers ”](#headers)

**X-Pagination-Current-Page**

integer

Current page

**X-Pagination-Page-Count**

integer

Total number of pages

**X-Pagination-Per-Page**

integer

Number of items per page

**X-Pagination-Total-Count**

integer

Total number of items

### create

[Section titled “create”](#operation-createRole-post)

POST

/v2/role/create

-   

Creates a new safety role in an office.

Requires `office_id`, `project_id`, and `name`. The `office_role_id` is auto-generated if not provided.

## Authorizations

[Section titled “Authorizations ”](#authorizations)

-   **[OAuth2](/api/role/#oauth2)**
-   **[AccessToken](/api/role/#accesstoken)**

#### Request Body required

[Section titled “Request Body required ”](#request-body)

Role to create

Select media typeapplication/json

object

**office\_role\_id**

Unique identifier. Auto-generated if not provided. Used as `subscriber_id` (with `subscriber_type: ROLE`) in the compliance schedule and as `resource_id` in certificates.

string format: uuid

**office\_id**

required

The office this role belongs to. Pass the `office_id`.

string format: uuid

**code**

Identifier code.

string

<= 45 characters

**name**

required

Name of the role.

string

<= 255 characters

**description**

Optional description.

string

nullable

**project\_id**

required

The project (company). Pass the `project_id`.

string format: uuid

#### Responses

[Section titled “ Responses ”](#responses)

##### 201

[Section titled “201 ”](#201)

Role created successfully

Select media typeapplication/json

object

**office\_role\_id**

Unique identifier. Auto-generated if not provided. Used as `subscriber_id` (with `subscriber_type: ROLE`) in the compliance schedule and as `resource_id` in certificates.

string format: uuid

**office\_id**

required

The office this role belongs to. Pass the `office_id`.

string format: uuid

**code**

Identifier code.

string

<= 45 characters

**name**

required

Name of the role.

string

<= 255 characters

**description**

Optional description.

string

nullable

**project\_id**

required

The project (company). Pass the `project_id`.

string format: uuid

### view

[Section titled “view”](#operation-viewRole-get)

GET

/v2/role/view/{id}

-   

Retrieves a single role by its ID.

## Authorizations

[Section titled “Authorizations ”](#authorizations)

-   **[OAuth2](/api/role/#oauth2)**
-   **[AccessToken](/api/role/#accesstoken)**

#### Path Parameters

[Section titled “Path Parameters ”](#path-parameters)

**id**

required

string format: uuid

The office\_role\_id to retrieve.

#### Responses

[Section titled “ Responses ”](#responses)

##### 200

[Section titled “200 ”](#200)

Role found

Select media typeapplication/json

object

**office\_role\_id**

Unique identifier. Used as `subscriber_id` (ROLE) or `resource_id`.

string format: uuid

**office\_id**

string format: uuid

**project\_id**

string format: uuid

**code**

string

**name**

string

**description**

string

**office\_name**

Name of the office.

string

**project\_name**

Name of the project.

string

**project\_type**

string

Allowed values: safety template

**owned\_active**

Whether this role is currently active.

boolean

nullable

**parent\_active**

Whether the parent office is currently active.

boolean

nullable

##### 404

[Section titled “404 ”](#404)

Role not found

### update

[Section titled “update”](#operation-updateRole-put)

PUT

/v2/role/update/{id}

-   

Updates an existing role.

## Authorizations

[Section titled “Authorizations ”](#authorizations)

-   **[OAuth2](/api/role/#oauth2)**
-   **[AccessToken](/api/role/#accesstoken)**

#### Path Parameters

[Section titled “Path Parameters ”](#path-parameters)

**id**

required

string format: uuid

The office\_role\_id to update.

#### Request Body required

[Section titled “Request Body required ”](#request-body)

Fields to update

Select media typeapplication/json

object

**office\_role\_id**

Unique identifier. Auto-generated if not provided. Used as `subscriber_id` (with `subscriber_type: ROLE`) in the compliance schedule and as `resource_id` in certificates.

string format: uuid

**office\_id**

required

The office this role belongs to. Pass the `office_id`.

string format: uuid

**code**

Identifier code.

string

<= 45 characters

**name**

required

Name of the role.

string

<= 255 characters

**description**

Optional description.

string

nullable

**project\_id**

required

The project (company). Pass the `project_id`.

string format: uuid

#### Responses

[Section titled “ Responses ”](#responses)

##### 200

[Section titled “200 ”](#200)

Role updated successfully

Select media typeapplication/json

object

**office\_role\_id**

Unique identifier. Auto-generated if not provided. Used as `subscriber_id` (with `subscriber_type: ROLE`) in the compliance schedule and as `resource_id` in certificates.

string format: uuid

**office\_id**

required

The office this role belongs to. Pass the `office_id`.

string format: uuid

**code**

Identifier code.

string

<= 45 characters

**name**

required

Name of the role.

string

<= 255 characters

**description**

Optional description.

string

nullable

**project\_id**

required

The project (company). Pass the `project_id`.

string format: uuid

##### 404

[Section titled “404 ”](#404)

Role not found

### delete

[Section titled “delete”](#operation-deleteRole-delete)

DELETE

/v2/role/delete/{id}

-   

Deletes a role.

If `force=false` (default), the response lists child entities. If `force=true`, the role and all related entities are deleted.

## Authorizations

[Section titled “Authorizations ”](#authorizations)

-   **[OAuth2](/api/role/#oauth2)**
-   **[AccessToken](/api/role/#accesstoken)**

#### Path Parameters

[Section titled “Path Parameters ”](#path-parameters)

**id**

required

string format: uuid

The office\_role\_id to delete.

#### Query Parameters

[Section titled “Query Parameters ”](#query-parameters)

**force**

boolean

If true, deletes the role and all child entities.

#### Responses

[Section titled “ Responses ”](#responses)

##### 204

[Section titled “204 ”](#204)

Role deleted successfully

##### 400

[Section titled “400 ”](#400)

Preview of entities that would be deleted (returned when force=false)

This site is protected by reCAPTCHA and the Google [Privacy Policy](https://policies.google.com/privacy) and [Terms of Service](https://policies.google.com/terms) apply.