---
title: "Record an organization DPA decision"
method: PATCH
path: "/v1/admin/organizations/{organizationId}/dpa"
tags: ["Admin"]
---

# Record an organization DPA decision

`PATCH /v1/admin/organizations/{organizationId}/dpa`

Allowlisted platform administrators only. Atomically updates the reserved metadata flag and records the authenticated actor and reason in the audit trail.

## Path parameters

- `organizationId` string, required

## Request body

- object
  - `dpaSigned` boolean, required
  - `reason` string, required

## Response `200`

DPA decision recorded.

- object
  - `ok` true, required
  - `organization` object, required
    - `id` string, typeid, required — Den TypeID with 'org_' prefix and a 26-character base32 suffix.
    - `dpaSigned` boolean, required

## Other responses

- `400` — Invalid DPA decision or organization identifier.
- `401` — Authentication is required.
- `403` — Platform administrator access is required.
- `404` — Organization not found.
- `503` — Organization metadata could not be read.

## Changes

- **2026-10-01** `df3754993784` — 1 info
  - added the optional property `anyOf[#/components/schemas/InvalidRequestError]/message` to the response with the `400` status
- **2026-09-11** `bb8ff73e4ad3` — 2 info
  - the endpoint scheme security `bearerAuth` was added to the API
  - the endpoint scheme security `denApiKey` was added to the API
- **2026-09-09** `f0e017c7e4e6` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/openworklabs/apis/den-api/changes/v1/admin/organizations/:organizationId/dpa/patch.md)

---

[API](https://skmtc.dev/openworklabs/apis/den-api.md) · [All operations](https://skmtc.dev/openworklabs/apis/den-api/llms.txt) · [OpenAPI document](https://skmtc.dev/openworklabs/apis/den-api/revisions/df3754993784?raw)
