POST
/v1/organizations/{organizationId}/projects/{projectId}/environments/{environmentId}/surface-registrations/{surfaceRegistrationId}/tenants/{tenantId}/web-surface-accesses/{principalId}/revocationRevoke one browser client's Web Surface admission
Permanently withdraw one exact browser transport admission without changing the ServicePrincipal's credentials or granting authority.
Authentication
Send an API key as a Bearer token in the Authorization header.
Parameters
Responses
200WebSurfaceAccessapplication/json400The request path, headers, query, or JSON body did not satisfy the published schema401Unauthorizedapplication/json403Forbiddenapplication/json404NotFoundapplication/jsonReusable schemas
WebSurfaceAccessEncoded
object- unknown properties allowed
false
principalIdrequiredstringThe Principal identifier.- maximum length
64 - pattern
^principal_[\s\S]+$
- maximum length
creationRequestIdrequired- WebSurfaceAccessCreationRequestIdThe caller-chosen identifier used to reconcile this creation attempt.
organizationIdrequiredstringThe Organization identifier.- maximum length
64 - pattern
^org_[\s\S]+$
- maximum length
projectIdrequiredstringThe Project identifier.- maximum length
64 - pattern
^proj_[\s\S]+$
- maximum length
environmentIdrequiredstringThe Environment identifier.- maximum length
64 - pattern
^env_[\s\S]+$
- maximum length
tenantIdrequiredstringThe Tenant identifier.- maximum length
64 - pattern
^tenant_[\s\S]+$
- maximum length
surfaceRegistrationIdrequiredstringThe Environment Surface registration identifier.- maximum length
64 - pattern
^surface_[\s\S]+$
- maximum length
agentPrincipalIdrequiredstringThe Environment Agent Principal identifier.- maximum length
64 - pattern
^principal_[\s\S]+$
- maximum length
createdAtrequiredstringWhen the resource was created, in UTC.- format
date-time
- format
revokedAtrequired- When the resource was revoked, in UTC, or null while it remains active.
- format
date-time
Any ofstringnull - format
UnauthorizedEncoded
object- unknown properties allowed
false
_tagrequiredstringThe stable machine-readable error type.- allowed values
"Unauthorized"
- allowed values
reasonrequiredstringA safe explanation of why the credential was rejected.
ForbiddenEncoded
object- unknown properties allowed
false
_tagrequiredstringThe stable machine-readable error type.- allowed values
"Forbidden"
- allowed values
permissionrequiredstringThe permission required by the refused operation.
NotFoundEncoded
object- unknown properties allowed
false
_tagrequiredstringThe stable machine-readable error type.- allowed values
"NotFound"
- allowed values
resourcerequiredstringThe resource type relevant to the error.idrequiredstringThe identifier supplied for the resource that was not found.
WebSurfaceAccessCreationRequestId
string- maximum length
36 - minimum length
36 - pattern
^[0-9a-f]{8}-[0-9a-f]{4}-4[0-9a-f]{3}-[89ab][0-9a-f]{3}-[0-9a-f]{12}$