Resource Guides
Endpoints
Token Management
Customer Management
Account Management
Bre-B Key Management
Recipient Management
Payment Management
QR codes
Title
Message
Create new category
What is the title of your new category?
Edit page index title
What is the title of the page index?
Edit category
What is the new title of your category?
Edit link
What is the new title and URL of your link?
Revoke Access Token
Summarize Page
Copy Markdown
Open in ChatGPT
Open in Claude
Overview
Revokes (invalidates) an OAuth access token by its token_id. Use this to immediately block a compromised or no-longer-needed token.
Endpoint Details
| Definition | Description |
|---|---|
| Endpoint | https://api.paas-sandbox.co.passportfintech.com/v1/iam/oauth/tokens/:token_id |
| Method | DELETE |
| Headers | Accept-Language, Content-Length, Content-Type: application/json, Authorization |
| Authentication | Access Token (Bearer Token) |
Request Body
| Field | Type | Description |
|---|---|---|
| token_id | String | Unique identifier of the access token. |
Example Request
JSON
6
1
curl --location --request DELETE 'https://api.paas.sandbox.co.passportfintech.com/v1/iam/oauth/tokens/249a0a2e-028a-4e15-a841-de9fd4e4cd84' \2
--header 'Content-Type: application/json' \3
--header 'Authorization: Bearer <YOUR_ACCESS_TOKEN>' \4
--data '{5
"token_id": "249a0a2e-028a-4e15-a841-de9fd4e4cd84"6
}'Response
This endpoint does not return any response body. A successful revocation will show a status code of 200.
Common Errors and Handling
| HTTP Status Code | Meaning | Description |
|---|---|---|
| 400 | Bad Request | Malformed token_id in path or body |
| 401 | Unauthorized | Missing/expired bearer token or token lacks iam.oauth.tokens.delete scope |
| 403 | Forbidden | Authenticated caller cannot revoke this token |
| 404 | Not Found | token_id does not exist or was already revoked |
| 409 | Conflict | Token is already revoked or in a non-revocable state |
| 500 | Server Error | Unexpected error; retry or contact support |
Best Practices
- Always send the token_id in both path parameter and body to avoid mismatches.
- Treat
200 OKas confirmation of success. - In case of security incidents, combine this with List Tokens to identify and revoke other active tokens quickly.
Type to search, ESC to discard
Type to search, ESC to discard
Type to search, ESC to discard
Last updated on
Next to read:
Link a MerchantDiscard Changes
Do you want to discard your current changes and overwrite with the template?
Archive Synced Block
Message
Create new Template
What is this template's title?
Delete Template
Message