sign_out_everywhere
Generated automatically from the published contract sources.
Build metadata: Registered in this build. Registration describes the default dispatcher in this build. It does not guarantee that a caller has the required credential or grant, that a tool is listed for that connection, or that the required service is configured.
A script calls this action over HTTPS at POST https://turnzero.ai/api/v1/actions/sign_out_everywhere, with a bearer credential and the action's payload as the JSON body.
Contract description
Sign the account out everywhere: every browser and every connected tool, this one included, signs in again; passkeys stay. To end one tool, use revoke_connection.
Access and action metadata
{
"name": "sign_out_everywhere",
"resource": "account",
"tier": "reversible",
"clients": [
"bearer",
"browser_session"
],
"summary": "End every session of the account at once: every browser's cookies and every connection, the caller's own included, each signing in again; a passkey stands. The header's Sign out ends one browser alone.",
"annotations": {
"readOnlyHint": false,
"destructiveHint": true,
"openWorldHint": false
}
}
MCP catalog entry
{
"name": "sign_out_everywhere",
"tier": "reversible",
"summary": "Sign the account out everywhere: every browser and every connected tool, this one included, signs in again; passkeys stay. To end one tool, use revoke_connection.",
"scenario": "API-L0-21",
"owners": [
"ACS-L0-18",
"ACS-L0-11",
"MCP-10"
]
}
request
| JSON pointer | Description and constraints |
|---|---|
| "" (root) | Type: object |
response
| JSON pointer | Description and constraints |
|---|---|
| "" (root) | The account-wide ending: every session row of both legs revoked and every refresh row deleted, the caller's own session included, and the tokens Turn Zero Blueprint's code exchange issued the account revoked. Type: object Required fields: ["contract_version","sessions_ended","refresh_rows_deleted","exchange_tokens_revoked","detail"] |
| / |
Required value: 1 |
| / |
The short reference the platform recorded this call under, ten lowercase hexadecimal characters, the value the call’s record row carries; quote it when reporting the call. Type: string Pattern: ^[0-9a-f]{10}$ |
| / |
The session rows revoked: every browser session and every connection's access token. Type: integer Minimum: 0 |
| / |
The refresh credentials deleted, so no connection renews. Type: integer Minimum: 0 |
| / |
Type: string |
Complete payload contract
{
"request": {
"type": "object",
"properties": {}
},
"response": {
"type": "object",
"description": "The account-wide ending: every session row of both legs revoked and every refresh row deleted, the caller's own session included, and the tokens Turn Zero Blueprint's code exchange issued the account revoked.",
"required": [
"contract_version",
"sessions_ended",
"refresh_rows_deleted",
"exchange_tokens_revoked",
"detail"
],
"properties": {
"contract_version": {
"const": 1
},
"reference": {
"type": "string",
"pattern": "^[0-9a-f]{10}$",
"description": "The short reference the platform recorded this call under, ten lowercase hexadecimal characters, the value the call’s record row carries; quote it when reporting the call."
},
"sessions_ended": {
"type": "integer",
"minimum": 0,
"description": "The session rows revoked: every browser session and every connection's access token."
},
"refresh_rows_deleted": {
"type": "integer",
"minimum": 0,
"description": "The refresh credentials deleted, so no connection renews."
},
"detail": {
"type": "string"
}
}
}
}
Shared contracts
- Refusals: every refusal, by surface, with its cause and its remedy
- schemas/wire_error.schema.json
- schemas/wire_errors.json
- schemas/action_payloads.json (includes shared shapes)
- management_api_contract.md