# chainctl guardener entitlement get

URL: https://edu.chainguard.dev/platform/chainctl/chainctl-docs/chainctl_guardener_entitlement_get.md
Last Modified: September 2, 2026
Tags: chainctl, Reference, Product

 chainctl guardener entitlement get Show the guardener entitlement for a group.
Synopsis Show the guardener entitlement for a group.
The entitlement records the configured repository visibility scope for the group. This administrative setting does not determine current repository coverage, which is controlled by the guardener GitHub App&rsquo;s repository selection. A group with no configured entitlement shows the default public scope.
Requires the guardener.entitlement.list capability on the group.
chainctl guardener entitlement get [flags] Options --parent string Name or UIDP of the Chainguard group. Prompts interactively if omitted. Options inherited from parent commands --api string The url of the Chainguard platform API. (default &#34;https://console-api.enforce.dev&#34;) --audience string The Chainguard token audience to request. (default &#34;https://console-api.enforce.dev&#34;) --config string A specific chainctl config file. Uses CHAINCTL_CONFIG environment variable if a file is not passed explicitly. --console string The url of the Chainguard platform Console. (default &#34;https://console.chainguard.dev&#34;) --force-color Force color output even when stdout is not a TTY. -h, --help Help for chainctl --issuer string The url of the Chainguard STS endpoint. (default &#34;https://issuer.enforce.dev&#34;) --log-level string Set the log level (debug, info) (default &#34;ERROR&#34;) -o, --output string Output format. One of: [csv, env, go-template, id, json, markdown, none, table, terse, tree, wide] -v, --v int Set the log verbosity level. SEE ALSO chainctl guardener entitlement	- Manage a group&rsquo;s guardener entitlement. 
