# List all accessible roles
chainctl iam roles list
# List all managed (built-in) roles
chainctl iam roles list --managed
# List all roles that can create groups
chainctl iam roles list --capabilities=groups.create
--capabilities strings A comma separated list of capabilities to grant this role.
--group string Group to list roles from.
-h, --help help for list
--managed Only list managed (built-in) roles.
--name string The exact name of roles to list.
--api string The url of the Chainguard platform API. (default "http://api.api-system.svc")
--audience string The Chainguard token audience to request. (default "http://api.api-system.svc")
--config string A specific chainctl config file.
--console string The url of the Chainguard platform Console. (default "http://console-ui.api-system.svc")
--issuer string The url of the Chainguard STS endpoint. (default "http://issuer.oidc-system.svc")
-o, --output string Output format. One of: ["", "table", "tree", "json", "id", "wide"]
--timestamp-authority string The url of the Chainguard Timestamp Authority endpoint. (default "http://tsa.timestamp-authority.svc")
-v, --v int Set the log verbosity level.