Cuts the agent off: its session closes within seconds and its identity is deleted, so it cannot connect again. It stays in the list as revoked.
Needs scope agents:write.
bearerAuthorizationBearer <token>An access token from the identity provider: a person's, or a customer's from the client credentials grant with an API key (docs.inorbit.hr). The gateway verifies it; the audience is iohr-api.
org_id*stringThe account's id: org in GET /v1/me.
agent_id*stringThe agent's id (agt_…), from List agents.
idempotency-key?stringMakes a retry safe: a repeat with the same key and the same body within a day answers what the first call did (with Idempotency-Replayed: true) instead of running again; the same key with another body is 422 unprocessable. 1 to 255 visible characters; a UUID is a good one.
1 <= length <= 255iohr.agents.v1.RevokeAgentRequest; path variables override their fields
application/json- body
iohr.agents.v1.RevokeAgentRequest
agent_id?stringorg_id?stringiohr.agents.v1.RevokeAgentResponse
application/json- response
iohr.agents.v1.RevokeAgentResponse
agent?iohr.agents.v1.Agent
import { ApiError, Public } from "@inorbithr/sdk";// Reads INORBIT_TOKEN, or INORBIT_KEY_ID and INORBIT_KEY_SECRET.const api = Public.fromEnv();try { const { value } = await api.agents.revokeAgent("<org_id>", "<agent_id>", {}); console.log(value);} catch (e) { if (!(e instanceof ApiError)) throw e; console.error(`${e.code}: ${e.problem} (request id ${e.raw.requestId})`);}npm install @inorbithr/sdk. Calls the package's public surface; an operation newer than your package needs the next release or a client generated for your account. The SDKs.
{ "agent": { "agent_id": "string", "arch": "string", "capabilities": [ "string" ], "checks": { "accepted": 0, "checks_hash": "string", "reconciled_at": "string", "rejected": [ { "key": "string", "reason": "string" } ] }, "clock_skew_ms": "string", "domains": [ "string" ], "enrolled_at": "string", "environment": "string", "last_seen_at": "string", "name": "string", "os": "string", "policy_hash": "string", "revoked_at": "string", "rtt_last_ms": 0, "rtt_p95_ms": 0, "status": "string", "version": "string" }}Create an agent enrollment POST
A one-time token (`ioe_…`) that enrolls one agent for an environment and the account's verified domains, within the hour. The token is in this answer only; the platform keeps its hash. Every domain must be verified for the account. Needs scope `agents:write`.
Delete an agent DELETE
Revokes the agent if it is not already, then takes it off the list. Needs scope `agents:write`.