> ## Documentation Index
> Fetch the complete documentation index at: https://docs.prisme.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Read legal content for a type and the caller's organization

> Returns the HTML legal content stored for the caller's
organization under the given type. Open to any authenticated
user; the content is read directly from the workspace's `/files`
API using the predictable id `legal-{orgSlug}-{type}`. Returns
an empty `content` when no document exists yet.




## OpenAPI

````yaml /api-reference/ai-governance-v2/swagger.yml get /v1/legal/{type}
openapi: 3.0.3
info:
  version: 1.0.0
  title: AI Governance API
  description: |
    Public REST API for the Prisme.ai AI Governance workspace -
    announcements, legal documents, notifications, observability
    dashboards, audit logs, and active-org listing.
  contact:
    name: Prisme.ai
    url: https://prisme.ai
servers:
  - url: https://{host}/v2/workspaces/slug:ai-governance-v2/webhooks
    description: Prisme.ai workspace webhooks
    variables:
      host:
        default: api.studio.prisme.ai
        description: API host (override for self-hosted or sandbox)
security:
  - BearerAuth: []
  - OrgApiKeyAuth: []
tags:
  - name: Announcements
    description: Platform announcements (CRUD + audience targeting).
  - name: Legal
    description: Versioned legal documents (terms, privacy, etc.).
  - name: Notifications
    description: Per-user notifications derived from announcements.
  - name: Observability
    description: >-
      Cross-workspace and per-workspace observability dashboards, traces, and
      feeds.
  - name: Orgs
    description: Organization listing and audit logs.
paths:
  /v1/legal/{type}:
    parameters:
      - in: path
        name: type
        required: true
        schema:
          type: string
          maxLength: 64
          pattern: ^[a-z0-9-]+$
        description: |
          Legal document type slug (e.g. `cgu`, `privacy-policy`,
          `secure-chat`).
    get:
      tags:
        - Legal
      summary: Read legal content for a type and the caller's organization
      description: |
        Returns the HTML legal content stored for the caller's
        organization under the given type. Open to any authenticated
        user; the content is read directly from the workspace's `/files`
        API using the predictable id `legal-{orgSlug}-{type}`. Returns
        an empty `content` when no document exists yet.
      operationId: getLegalDocument
      responses:
        '200':
          description: Legal document content (or empty when missing).
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/LegalDocument'
        '401':
          description: Unauthenticated.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '403':
          description: Forbidden - organization context required.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '405':
          description: Method not allowed.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '429':
          description: Rate limit exceeded.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
components:
  schemas:
    LegalDocument:
      type: object
      description: |
        Per-org legal document for a given type slug. Backed by the
        platform `/files` API (file id `legal-{orgSlug}-{type}`).
      properties:
        type:
          type: string
        orgSlug:
          type: string
        content:
          type: string
          description: Raw HTML content; empty string when no document is stored.
    Error:
      type: object
      required:
        - error
        - message
      properties:
        error:
          type: string
          description: >-
            Stable PascalCase error code (e.g. AnnouncementNotFound,
            ValidationError).
        message:
          type: string
          description: Human-readable error message.
        details:
          type: object
          description: Optional structured context.
          additionalProperties: true
  securitySchemes:
    BearerAuth:
      type: http
      scheme: bearer
      bearerFormat: JWT
      description: |
        User-bound credential carrying an identity: either a session JWT
        or a user access token (`at:*`) generated from the user settings UI.
        Send as `Authorization: Bearer <token>`.
        Org API keys (`iak_*`) are **not** accepted here - they carry
        no user identity. Use the `x-prismeai-api-key` header instead
        (see `OrgApiKeyAuth`).
    OrgApiKeyAuth:
      type: apiKey
      in: header
      name: x-prismeai-api-key
      description: |
        Organization API key (`iak_{orgSlug}_{uuid}`), managed from the
        AI Governance UI. Unlike `Authorization: Bearer`, this credential
        is **not** tied to a user identity - it is bound to the org and
        its effective access is defined by the scopes / permission rules
        attached to it (it can be restricted to a single project, or kept
        broader - e.g. usable across AI Governance, Agent Factory and
        LLM Gateway).
        Send as `x-prismeai-api-key: iak_...`.

````