---
title: "Revoke a token"
method: DELETE
path: "/token"
tags: ["Auth"]
---

# Revoke a token

`DELETE /token`

Revokes the **User Access Token** that is included in the `Authorization` header of the request.

Revoking a User Access Token will remove your access to **all** of a user's connected account data including transactions.

> ℹ️
>
> Users can re-authorize your application's access to their accounts via the [📚 authorisation flow](/docs/authorizing-with-oauth2).

## Headers

- `X-Akahu-Id` string, required

## Response `200`

Successful response.

- object
  - `success` boolean

## Other responses

- `400` — Your request was malformed or otherwise unacceptable. More details are provided under the `message` key in the response.
- `401` — You are not authorised to access this content.
- `403` — You are not allowed to access this content.
- `500` — An internal error has prevented us from processing the request. More detail may be supplied in the `message` key.

---

[API](https://skmtc.dev/akahu/apis/akahu-enduring-api.md) · [All operations](https://skmtc.dev/akahu/apis/akahu-enduring-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/akahu/akahu-enduring-api/revisions/b2de9915920d/schema)
