Revoke a token
POST/oauth/revoke
RFC 7009. Revokes an access token (vh_oat_) or a refresh token
(vh_ort_). Revoking a refresh token disconnects the app from the
dealer: the whole authorisation and every token it issued are
revoked. Answers 200 with an empty object whether or not the token
existed, so the endpoint cannot be used to test tokens. Client
authentication as for /oauth/token. No key is sent.
Request
Responses
- 200
- 400
- 401
- 429
Revoked, or there was nothing to revoke.
An RFC 6749 error.
Response Headers
Client authentication failed (invalid_client).
Response Headers
Basic realm="vehiso".
Too many requests. Code rate_limited; wait Retry-After seconds. On POST /theme-generations, also theme_generation_quota_exceeded, when the dealer's monthly theme generations are used up (no Retry-After).
Response Headers
This request's id. Quote it to support.
Requests allowed per minute for this key.
Requests left in the current minute.
Seconds to wait before retrying.