post https://{applicationQualifiedDomain}.us.wristband.dev/refresh-tokens//revoke
Revokes the specified refresh token.
Required Permissions
Below is the list of required permissions needed to interact with this API. For each permission the allowed permission boundaries are also specified.
Permission | Boundary | Description |
---|---|---|
refresh-token:revoke | Application | The subject can revoke any refresh token under the application that the subject belongs to. |
Tenant | The subject can revoke any refresh token associated to the tenant that the subject belongs to. | |
Tenant Inclusion List | The subject can revoke any refresh token associated to tenants specified in the tenant inclusion list. | |
Tenant Exclusion List | The subject can revoke any refresh token associated to tenants that belong to the subject's application but are not included in the tenant exclusion list. | |
Self | A user subject can revoke their own refresh tokens. |