Skip to content

Commit 221d9f2

Browse files
committed
Clarify that logging out deletes devices too
Fixes #1651
1 parent 5c268ef commit 221d9f2

File tree

2 files changed

+4
-2
lines changed

2 files changed

+4
-2
lines changed

api/client-server/logout.yaml

Lines changed: 3 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ paths:
3232
summary: Invalidates a user access token
3333
description: |-
3434
Invalidates an existing access token, so that it can no longer be used for
35-
authorization.
35+
authorization. The device associated with the access token is also deleted.
3636
operationId: logout
3737
security:
3838
- accessToken: []
@@ -49,7 +49,8 @@ paths:
4949
summary: Invalidates all access tokens for a user
5050
description: |-
5151
Invalidates all access tokens for a user, so that they can no longer be used for
52-
authorization. This includes the access token that made this request.
52+
authorization. This includes the access token that made this request. All devices
53+
for the user are also deleted.
5354
5455
This endpoint does not require UI authorization because UI authorization is
5556
designed to protect against attacks where the someone gets hold of a single access
Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
Clarify that devices are deleted upon logout.

0 commit comments

Comments
 (0)