Read session-control revocation status
GET/security/session-controls/status
Returns the current session-control revocation fence status for the platform, showing the most recent bulk session revocation events across all tenants. Use to confirm that an emergency revocation was applied and determine when it took effect.
Request
This endpoint takes no parameters and no request body.
Responses
200 Session-control revocation status
Content type application/json, object.
| Field | Type | Required | Description |
|---|---|---|---|
last_global_revocation_at | string (date-time), nullable | No | Timestamp of the most recent platform-wide session revocation, if any. |
recent_tenant_revocations | array of object | No | Per-tenant revocation events from the last 24 hours. |
recent_tenant_revocations[].tenant_id | string | No | |
recent_tenant_revocations[].revoked_at | string (date-time) | No | |
recent_tenant_revocations[].reason | string, nullable | No | |
recent_tenant_revocations[].issued_by_admin_id | integer | No |
Example
{
"last_global_revocation_at": null,
"recent_tenant_revocations": [
{
"tenant_id": "acme",
"revoked_at": "2026-04-08T15:00:00Z",
"reason": "Credential exposure suspected after phishing report.",
"issued_by_admin_id": 3
}
]
}
Example request
Paths are relative to the control-plane API base URL ($BASE_URL below).
curl -X GET "$BASE_URL/security/session-controls/status" \
-H "Accept: application/json"