API keys
Revoke an API key
Revokes the key. Requests made with it then fail with 401 and invalid or expired API key. The key stays in the list with revoked: 1.
- Console only: owner or admin
- Workspace:
X-Tenant-ID
Path parameters
iduuidrequiredKey id (not the key itself).
Headers
CookiestringrequiredThe
whatsappx_sessioncookie the app sets when you sign in. Browsers send it automatically; API keys are not accepted on this endpoint.X-Tenant-IDuuidrequiredWorkspace id. Required for session requests. You can pass
?tenant=<id>instead.
Response
200 OKapplication/json
okbooleanAlways
true.
Status codes
- 200OK. The key was revoked.
- 400Bad request. The id is not a valid UUID.
- 401Unauthorized. No signed-in session (
unauthorized). - 403Forbidden. API keys can never call this endpoint (
API keys cannot administer workspaces). A signed-in user who is not an owner or admin getsadmin required; a user who is not a member of the workspace getsforbidden. - 404Not found. No active key with this id in the workspace (also returned for a key that is already revoked).
- 500Server error. The key could not be revoked.