---
title: "Revoke one of your credentials"
description: "Stops a key or a connected agent working, immediately."
canonical: "https://gtable.app/docs/app-api/me/keys-revoke"
updated: "2026-10-05"
---

# Revoke one of your credentials

`DELETE https://your-suite.gtable.app/your-app/v1/me/keys/{credentialId}`

Stops a key or a connected agent working, immediately.

> **Note: Generic contract**
>
> Your own version of this operation, with your tables and the fields you can read, is in
> your app's document: `https://{suite}.gtable.app/{app}/v1/openapi.json`, behind your credential.
> [Why each person gets their own](/docs/start/studio-and-runtime#why-an-app-has-an-api-of-its-own).

Only your own, and only from a signed-in browser.

Any valid credential for this API: no scope is needed. Operation `me.keys.revoke`. Not an MCP tool: keys are revoked by a person in a signed-in browser. CLI, once published: `gtable me keys revoke`.

## Path parameters

| Name           | Type   | Required | Description |
| -------------- | ------ | -------- | ----------- |
| `credentialId` | string | yes      |             |

## Headers

| Name              | Type   | Required | Description                                                                                                                                                                                                                                                        |
| ----------------- | ------ | -------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
| `Idempotency-Key` | string | no       | Any unique string. Sending the same key with the same request again returns the first response (marked `Idempotency-Replayed: true`) instead of running it twice. Reusing it for a different request is refused with 409. Kept for 24 hours. Up to 255 characters. |
