The client reads the token of the current session and sends it as Authorization: Bearer <jwt>. The token is verified without an extra round trip. The workspace is picked with the X-Workspace-Id header. Without it, the account's active workspace is used.
curl https://api.freelance-os.fr/v1/me \
-H "Authorization: Bearer $JWT"