Retrieves extension permission definitions including permission name and description.
get /bsp/api/v1/bmp/extensions/permissions
https://{server-hostname}:8383/bsp/api/v1/bmp/extensions/permissions
BrowserManager.READCopied!
Authorization: d92d4xxxxxxxxxxxxx15f52
curl --request GET \
--url https://appdomain/bsp/api/v1/bmp/extensions/permissions \
--header 'Accept: application/json' \
--header 'Authorization: d92d4xxxxxxxxxxxxx15f52'List of extension permission definitions
Permission definitions
Extension permission definition
Unique identifier of the permission
Technical name of the permission
Human-readable description
Unauthorized error code returned when authentication credentials are missing, expired, or invalid (authentication=required)
Authentication failure reason
Forbidden error code returned when the authenticated user does not have the required uem-roles (e.g., DataEncryption_Admin or DataEncryptionRecoveryKey_Admin)
Message indicating insufficient privileges to access this resource
Rate limit error code returned when the API call threshold (configured via threshold/duration in security XML) is exceeded; client is locked out for lock-period minutes
Rate limit exceeded message with retry guidance
Internal server error during extension operations
Error message describing the server failure
Error code for internal server errors
Permission definitions
{
"extensions": [
{
"permission_description": "Schedules tasks to run periodically or at a specified time",
"permission_id": "1",
"permission_name": "Alarms"
},
{
"permission_description": "Requests that the extension be granted permissions according to the active tab specification.",
"permission_id": "2",
"permission_name": "Active tab"
},
{
"permission_description": "Makes Chrome start up early and and shut down late, so that apps and extensions can have a longer life.",
"permission_id": "4",
"permission_name": "Background"
}
]
}
Unauthorized
{
"errorCode": "UNAUTHORIZED",
"errorMsg": "You are not authorized to perform this action"
}
Forbidden
{
"errorCode": "FORBIDDEN",
"errorMsg": "You do not have permission to access this resource"
}
Rate limit exceeded
{
"errorCode": "RATE_LIMIT_EXCEEDED",
"errorMsg": "You have exceeded the maximum number of API calls. Please try again later."
}
Server error
{
"error_description": "Internal Server error, Please try again in a moment.",
"error_code": "COM0004"
}
![]()
Duration: 1 minute | Threshold: 60 | Lock period: 5 minutes
Duration - Time window for the threshold.
Threshold - Number of API calls allowed within the specified duration.
Lock Period - Wait time before consecutive API requests.
© 2026, Zoho Corporation Pvt. Ltd. All Rights Reserved.
© 2026, Zoho Corporation Pvt. Ltd. All Rights Reserved.