tenant.manage permission (held by org admin or owner); get additionally admits any caller whose active session is scoped to the requested tenant.
List
dome tenants list
List tenants under your active organization.
Permission: Org-level
tenant.manage (held by org owner or admin).
List tenants in the active org
Target a specific org
ID, NAME, PLAN, and CREATED. Pass --format json for the raw response.
Get
dome tenants get <tenant-id>
Get a single tenant by id. The caller is admitted if either (a) their active session is scoped to the requested tenant, or (b) they hold org admin or owner on the requested tenant’s org.
Permission: Tenant-scoped session for the requested tenant or org-level
tenant.manage on the requested tenant’s org.
Get a tenant in the active org
Get a tenant from a specific org
--format json for the raw response.
Create
dome tenants create
Create a new tenant under your active organization. The caller becomes the initial tenant admin.
Permission: Org-level
tenant.manage on the org named in --org-id (held by org owner or admin). The permission check runs against the request’s target org, not your active context — a caller authorized on org X cannot create a tenant in org Y by overriding --org-id.
Create a tenant under the active org
Target a specific org
dome tenants create works directly after dome auth login — no prior dome use is required. As long as --org-id (or the default active org) names an org you hold tenant.manage on, the request succeeds.Creating a new organization is operator-only. Contact Dome to provision a new org.