Revoke a scoped role assignment
DELETE /v1/access-policy/role-assignments/{id}: Soft-revokes one non-ROOT assignment and returns its durable historical row. Repeating the request is idempotent while the caller retains MANAGE_ACCESS.
Soft-revokes one non-ROOT assignment and returns its durable historical row. Repeating the request is idempotent while the caller retains MANAGE_ACCESS.
In: header
Path Parameters
Role-assignment UUID
Header Parameters
Optional waiting budget in milliseconds, measured from REST servlet ingress and shared across all internal gRPC calls. Supply one decimal integer from 1 to 86400000. Omission adds no deadline. Existing shorter deadlines still apply. Expiry returns HTTP 504 before streaming starts; after streaming starts, no successful completion event is sent. Use SSE or opt into GoodMem-Stream-Terminal for an explicit terminal outcome. Retrieval work is cooperatively cancelled. An accepted mutation may still commit after timeout or disconnect; a failed response does not imply rollback.
int641 <= value <= 86400000Response Body
curl -X DELETE "https://your-goodmem-server.example.com/v1/access-policy/role-assignments/9f75bfdf-6c08-4ccc-b945-8688d91ef25d" \ -H "GoodMem-Timeout-Ms: 30000"{
"roleAssignmentId": "9f75bfdf-6c08-4ccc-b945-8688d91ef25d",
"principalId": "70e025f6-76ca-4cbe-b8fc-7dab8e84590a",
"role": "ROOT",
"assignedResource": {
"kind": "INSTANCE",
"resourceId": "550e8400-e29b-41d4-a716-446655440000"
},
"assignedAt": 0,
"assignedById": "114ad558-323d-4b76-85b8-37af103b8650",
"revokedAt": 0,
"revokedById": "ab882e21-ea3f-4c29-9040-49be3cc93162"
}Revoke an authorization grant
DELETE /v1/access-policy/grants/{id}: Soft-revokes one grant and returns its durable historical row. Repeating the request is idempotent while the caller retains MANAGE_ACCESS on the target.
Admin
Browse REST endpoints for server draining, license reloads, job purging, retrieval log policies, and GoodMem instance ownership transfer.