Get role
GET /roles/:id/
Read-only catalogue of the fixed system roles.
Not tenant data — Admin/Editor/Viewer are the same everywhere — but org
admins need to read it to populate a role picker, so it is scoped to them
rather than to platform staff.
Request