Reject an access revocation
Marks a (pending) access revocation as rejected with a required reason, recording the caller as the provisioner. Terminal: an already-revoked or already-rejected revocation returns a validation error.
Authorizations
Bearer token authentication. Pass your AccessOwl API token in the Authorization header as Bearer <token>.
Headers
Optional key (1–255 chars) for safely retrying a request. Reusing the same key for the same request returns 409 Conflict and is not processed again — this confirms the request was already received. Keys are retained for 14 days.
1 - 255Path Parameters
Access revocation ID
Body
Reject parameters
Request body for rejecting an access revocation
Reason for rejecting the revocation
255Response
Access revocation rejected
An access revocation
Application ID
Access revocation ID
Revocation reason
Current status of the revocation
processing_access, rejected, revoked User ID of the grantee
Creation timestamp
Permission IDs being revoked
Provisioning type
application_admin, automatic User ID of the requestor
Resource ID (null for app-wide revocations)
The provisioner's rejection reason when the revocation was rejected; null otherwise

