Project Access Tokens

Revoke a project access token

Changed on

Revokes the token. It stops authenticating immediately in the region handling this call and within seconds across Volcano's other regions.

The record is kept rather than deleted, so the token's name, prefix, last use, and request history stay available — which is what you need if you are revoking because a secret leaked. Revoking an already-revoked token succeeds.

Revoking does not undo anything the token already did. Treat whatever it could reach as exposed and rotate accordingly.

Requires a platform token.

delete/projects/{id}/access-tokens/{tokenId}

Request

  • Base URL: https://api.volcano.dev
  • URL: https://api.volcano.dev/projects/{id}/access-tokens/{tokenId}
  • Auth: HTTP bearer

Path parameters

idstring uuid required

Project ID

tokenIdstring uuid required

Project access token ID

Response

Token revoked

Changes