---
title: "Delete an enrolled SCA factor"
method: DELETE
path: "/sca/factors/{credentialId}"
tags: ["Strong Customer Authentication"]
---

# Delete an enrolled SCA factor

`DELETE /sca/factors/{credentialId}`

Delete an enrolled SCA factor by its credential id. Today only `PASSKEY`
factors carry a `credentialId` and are deletable this way.

This endpoint is only meaningful for customers in a region where SCA is required (e.g. EU). For customers outside SCA-regulated regions, this returns `409`.

## Response `204`

Factor deleted; no content is returned.

## Other responses

- `401` — Unauthorized
- `404` — Customer or factor not found
- `409` — SCA is not required for this customer.
- `500` — Internal service error

## Changes

- **2026-08-11** `b06902b6595a` — 3 warning
  - added the new `CARD_ALREADY_CLOSED` enum value to the `code` response property for the response status `409`
  - added the new `CARD_NOT_MUTABLE` enum value to the `code` response property for the response status `409`
  - added the new `INVALID_STATE_TRANSITION` enum value to the `code` response property for the response status `409`
- **2026-07-31** `b21ed434ee6e` — 2 warning
  - added the new `BENEFICIARY_TRUSTED` enum value to the `code` response property for the response status `409`
  - added the new `SCA_SESSION_REQUIRED` enum value to the `code` response property for the response status `409`
- **2026-07-26** `094458a989d2` — 1 warning
  - added the new `TRANSACTION_NOT_CANCELLABLE` enum value to the `code` response property for the response status `409`
- **2026-07-21** `483d0a08414b` — 1 info
  - endpoint added

[Change history](https://skmtc.dev/stainless-api/apis/grid-api/changes/sca/factors/:credentialId/delete.md)

---

[API](https://skmtc.dev/stainless-api/apis/grid-api.md) · [All operations](https://skmtc.dev/stainless-api/apis/grid-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/stainless-api/grid-api/revisions/2ec84c06fbec/schema)
