Skip to content

Read session-control revocation status

GET/security/session-controls/status

Returns the current session-control revocation fence status for the platform, showing the most recent bulk session revocation events across all tenants. Use to confirm that an emergency revocation was applied and determine when it took effect.

Request

This endpoint takes no parameters and no request body.

Responses

200 Session-control revocation status

Content type application/json, object.

FieldTypeRequiredDescription
last_global_revocation_atstring (date-time), nullableNo

Timestamp of the most recent platform-wide session revocation, if any.

recent_tenant_revocationsarray of objectNo

Per-tenant revocation events from the last 24 hours.

recent_tenant_revocations[].tenant_idstringNo
recent_tenant_revocations[].revoked_atstring (date-time)No
recent_tenant_revocations[].reasonstring, nullableNo
recent_tenant_revocations[].issued_by_admin_idintegerNo

Example

{
  "last_global_revocation_at": null,
  "recent_tenant_revocations": [
    {
      "tenant_id": "acme",
      "revoked_at": "2026-04-08T15:00:00Z",
      "reason": "Credential exposure suspected after phishing report.",
      "issued_by_admin_id": 3
    }
  ]
}

Example request

Paths are relative to the control-plane API base URL ($BASE_URL below).

curl -X GET "$BASE_URL/security/session-controls/status" \
  -H "Accept: application/json"
Loading