Skip to main content
POST

Body

string
required
The access token or refresh token to revoke.

Behavior

  • Always returns 200, even if the token was already revoked or doesn’t exist.
  • Revoking a refresh token also revokes all access tokens for that agent-client pair.
  • Accepts both Basic Auth (integrator-initiated) and Bearer Auth (agent-initiated).
Last modified on March 19, 2026