# JWT Invalid Token response from postman

**URL:** <https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872>\
**Category:** API and Webhooks\
**Created:** [February 4, 2020, 4:46pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872 "2020-02-04T16:46:41Z")\
**Posts on this page:** 11\
**Page:** 1

<div class="post-metadata">

**Author:** ![amztimeram](https://avatars.discourse-cdn.com/v4/letter/a/96bed5/32.png) [@amztimeram](https://devforum.zoom.us/u/amztimeram)\
**Post date:** [February 4, 2020, 4:46pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/1 "2020-02-04T16:46:41Z")

</div>

**Description**  
Getting invalid token response when make API call to retrieve subaccounts.  
Generated JWT token using [jwt.io](http://jwt.io) page as mentioned in [medium.com/zoom-developer-blog/using-zoom-apis-version-2-with-postman-3fba79dcdf2e](http://medium.com/zoom-developer-blog/using-zoom-apis-version-2-with-postman-3fba79dcdf2e)

Created a test JWT app from zoom app marketplace, used the API credentials right from there.

**Error**  
Response:  
{  
“code”: 124,  
“message”: “Invalid access token.”  
}

**Which App Type (OAuth / Chatbot / JWT / Webhook)?**  
JWT

**Which Endpoint/s?**  
accounts

**How To Reproduce (If applicable)**  
Steps to reproduce the behavior:

1. {{base\_url}}/accounts?page\_size=30&page\_number=1
2. See error

**Screenshots (If applicable)**

 ![image](https://us1.discourse-cdn.com/flex016/uploads/zoomdeveloper/original/2X/5/5d331dd8f59317112809ed6fe45378b4310e2e86.png)

**Additional context**  
Add any other context about the problem here.

---

<div class="post-metadata">

**Author:** ![tommy](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/tommy/32/72769_2.png) [@tommy](https://devforum.zoom.us/u/tommy)\
**Post date:** [February 4, 2020, 7:35pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/2 "2020-02-04T19:35:44Z")

</div>

Hey @amztimeram, thanks for posting and using Zoom!

Can you send me a screenshot of your postman request URL and response?

Also how are you setting the JWT Token in the request?

Thanks,  
Tommy

---

<div class="post-metadata">

**Author:** ![amztimeram](https://avatars.discourse-cdn.com/v4/letter/a/96bed5/32.png) [@amztimeram](https://devforum.zoom.us/u/amztimeram)\
**Post date:** [February 5, 2020, 1:05am UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/3 "2020-02-05T01:05:12Z")

</div>

Look like it works with Users/Meeting APIs but not account API. Setting up the JWT token in Authorization header with the Bearer string prefix.

 ![image](https://us1.discourse-cdn.com/flex016/uploads/zoomdeveloper/original/2X/d/d82ba92d0ca0ab5fd2ae7d72136081248b8f0931.png)

Req: {{baseUrl}}/users?status=active&page\_size=30&page\_number=1&role\_id=  
Res: {  
“page\_count”: 0,  
“page\_number”: 1,  
“page\_size”: 30,  
“total\_records”: 0,  
“users”:   
}

---

<div class="post-metadata">

**Author:** ![tommy](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/tommy/32/72769_2.png) [@tommy](https://devforum.zoom.us/u/tommy)\
**Post date:** [February 5, 2020, 5:02pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/4 "2020-02-05T17:02:51Z")

</div>

Hey @amztimeram,

Thanks for providing the screenshot. This is intended functionality because in order to call the GET /accounts endpoint you have to be a Zoom partner.

From the [docs](https://marketplace.zoom.us/docs/api-reference/zoom-api/accounts/accounts):

“Only master accounts can create and have sub accounts. Zoom only assigns this privilege to trusted partners.”

If you can, use the [GET /users](https://marketplace.zoom.us/docs/api-reference/zoom-api/users/users) API instead.

Thanks,  
Tommy

---

<div class="post-metadata">

**Author:** ![amztimeram](https://avatars.discourse-cdn.com/v4/letter/a/96bed5/32.png) [@amztimeram](https://devforum.zoom.us/u/amztimeram)\
**Post date:** [February 5, 2020, 10:49pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/5 "2020-02-05T22:49:44Z")

</div>

ok. thank you. I thought the same.

---

<div class="post-metadata">

**Author:** ![tommy](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/tommy/32/72769_2.png) [@tommy](https://devforum.zoom.us/u/tommy)\
**Post date:** [February 5, 2020, 11:01pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/6 "2020-02-05T23:01:26Z")

</div>

Happy to help! 🙂

Let us know if you have any other questions!

Thanks,  
Tommy

---

<div class="post-metadata">

**Author:** ![amztimeram](https://avatars.discourse-cdn.com/v4/letter/a/96bed5/32.png) [@amztimeram](https://devforum.zoom.us/u/amztimeram)\
**Post date:** [February 7, 2020, 4:11pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/7 "2020-02-07T16:11:13Z")

</div>

Hi Tommy,

I’m exploring the user APIs, I could get the individual user account details but not the list users.

Active UserIDs:  
“id”: “xGqnsesMRT-YJ3eKgPHppA”, - owner  
“id”: “12AraCijT-GItldVu8MIRw”, - member  
“id”: “s9I1GPb6SmSVjnhByzucTA”, - member

Request:  
{{baseUrl}}/users?status=active&page\_size=30&page\_number=1&role\_id=

Response:  
{  
“page\_count”: 0,  
“page\_number”: 1,  
“page\_size”: 30,  
**"total\_records": 0,**  
\*\* “users”: \*\*  
}

---

<div class="post-metadata">

**Author:** ![tommy](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/tommy/32/72769_2.png) [@tommy](https://devforum.zoom.us/u/tommy)\
**Post date:** [February 7, 2020, 5:51pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/8 "2020-02-07T17:51:40Z")

</div>

Hey @amztimeram,

Try without the `&role_id=` query param.

`{{baseUrl}}/users?status=active&page_size=30&page_number=1`

Thanks,  
Tommy

---

<div class="post-metadata">

**Author:** ![amztimeram](https://avatars.discourse-cdn.com/v4/letter/a/96bed5/32.png) [@amztimeram](https://devforum.zoom.us/u/amztimeram)\
**Post date:** [February 11, 2020, 6:15pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/9 "2020-02-11T18:15:24Z")

</div>

Thanks. I would like to know which API gives me the numeric account id instead of uuid in the responses? I have an licensed account (type 2) and trying to get the /accounts or /accounts/{account\_id}/billing APIs but those comes with ‘124 invalid access token’ error. the same access token works with User APIs. please assist.

---

<div class="post-metadata">

**Author:** ![tommy](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/tommy/32/72769_2.png) [@tommy](https://devforum.zoom.us/u/tommy)\
**Post date:** [February 11, 2020, 6:48pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/10 "2020-02-11T18:48:13Z")

</div>

Hey @amztimeram,

For the billing and account APIs [as stated in the docs](https://marketplace.zoom.us/docs/api-reference/zoom-api/accounts/accounts):

“Only master accounts can create and have sub accounts. Zoom only assigns this privilege to trusted partners.”

May I ask your use case in getting the account number, to see if there is an alternative.

Thanks,  
Tommy

---

<div class="post-metadata">

**Author:** ![DeveloperBot](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/developerbot/32/12632_2.png) [@DeveloperBot](https://devforum.zoom.us/u/DeveloperBot)\
**Post date:** [August 21, 2020, 7:25pm UTC](https://devforum.zoom.us/t/jwt-invalid-token-response-from-postman/7872/11 "2020-08-21T19:25:44Z")

</div>


