Responses returned from the REST API on editable objects contain two special properties ObjectCanBeEdited and ObjectCanBeDeleted which will identify whether or not the currently logged in user will be allowed to PUT or DELETE data for the current object.