# List the invitations sent to a merchant

One deal's merchant-portal invitations, newest first, LIVE AND DEAD. The dead ones are the point: that this workspace put the deal in somebody's hands, and until when, is what an audit comes looking for. The token is never here — it existed once, in the answer that minted it. Deals page only.

Access class: `def:read`.

## Endpoint

`GET /v1/definitions/{key}/rows/{rowId}/merchant-invitations`

## Parameters

| Name | In | Type | Required |
| --- | --- | --- | --- |
| key | path | string | Yes |
| rowId | path | string | Yes |
| body | query | null | No |
| params | query | object | No |
| query | query | object | No |

## Responses

### 200

the action's answer

Content type: `application/json`.

```json
{
  "data": [
    {
      "acceptedAt": "string",
      "createdAt": "string",
      "createdBy": 1,
      "dealId": "",
      "email": "string",
      "expiresAt": "string",
      "id": "",
      "language": "string",
      "lastSeenAt": "string",
      "merchantId": "",
      "name": "string",
      "revokedAt": "string",
      "status": "string"
    }
  ]
}
```

### default

a refusal: `{"error": "<what a person needs to read>"}`. 401 no credential, 402 the plan does not include this, 403 the seat does not, 404 the thing does not exist or is not yours to see.

Content type: `application/json`.

```json
{
  "error": "string"
}
```
