Revoke a Stakeholder

Soft-delete. The Stakeholder record is preserved with events.revokedAt set; subsequent GET .../{stakeholderId} returns the record with status semantics indicating revocation. List endpoints filter out revoked records by default; pass ?includeRevoked=true to retrieve historical entries (e.g., for compliance audit). Fires Stakeholder.Revoked. Cannot revoke the only active Principal while the Account state requires one; create or promote a replacement isPrincipal=true Stakeholder first (409).

Requires a session with recent MFA step-up for StakeholderChange. If step-up is missing or expired, this operation returns 403 StepUpMfaRequired; create and verify an MFA challenge at /v3/platform/mfa-challenges with requiredFor: "StakeholderChange", then retry.

Recent Requests
Log in to see full request history
TimeStatusUser Agent
Retrieving recent requests…
LoadingLoading…
Path Params
string
required
^(?:[A-Za-z0-9_.]{22}|[a-f0-9]{24})$

Account identifier. Newly created V3 Accounts use a 22-character Wingspan ID; migrated Accounts may retain a 24-character lowercase Mongo ObjectId.

string
required

Unique identifier of a Stakeholder record.

Headers
string
^(?:[A-Za-z0-9_.]{22}|[a-f0-9]{24})$

Select the Account for an Account-scoped operation. A direct ServiceAccount API key MUST supply this header, and the target must be within the ServiceAccount owner's or Authorization grant's Account boundary. A Person bearer may select an Account on which it has an active Stakeholder, and an Account session may select its bound Account (or a descendant only when the session explicitly includes descendants).

Responses
204

Stakeholder revoked (soft-delete; record preserved historically)

Language
Credentials
Bearer
JWT
LoadingLoading…
Response
Click Try It! to start a request and see the response here! Or choose an example:
application/problem+json