Moves a non-terminal Cryptographic Exchange to REVOKED, populates
revokedAt / revokedBy / revokedReason
atomically with the transition, and invalidates the linked Capability Grant
projection. Terminal and irreversible.
This is the ONE operation in the family whose justification has TWO homes: the
revokedReason property of the resource, and canonical position 21 of
the signed AdminAuditEvent. Both are written from the SAME submitted value, so a
divergence between them is a defect and not a degree of freedom.
reason is MANDATORY (PRD 231), bounded at
AuditFieldBounds.MAX_REASON_LENGTH (1,000 UTF-8 BYTES, not
characters) - the same bound applied
before signing - and NEVER written to a log line (231.19).
Authorization: requires scope admin.tenant.exchange.revoke.
| Time | Status | User Agent | |
|---|---|---|---|
Retrieving recent requests… | |||