Skip to navigation

Delete a principal

API key required. Tombstones the principal: the record stays resolvable by id forever (old receipts keep their meaning) and the name becomes reusable. Refuses with 409 while the principal still has live keys — pass ?force=1 to revoke every key first (one REVOKE receipt per key) and then delete. Writes a PRINCIPAL_DELETE receipt.

Path parameters

principalIdstringRequired

Query parameters

forcestringOptional
Set to 1 to revoke all of the principal's keys and then delete it.

Response

The tombstoned principal, plus the keys revoked by ?force=1.

Errors

401
Unauthorized Error
404
Not Found Error
409
Conflict Error