# Revoke a token

`POST /oauth/revoke`

Revokes an access or refresh token (RFC 7009); always returns `200`. Users remove the whole grant in Settings → App connections.

## Body

| Field | Type | Description |
|---|---|---|
| `token` (required) | string | Token. |

## Response

```json 200
HTTP/1.1 200 OK
```
