Detach a permission from a role
Remove a single permission from a custom role without replacing its complete permission set, and synchronize the change to the identity provider. Detaching a permission the role does not grant has no effect.
Required permissions: role:update.
Authentication
AuthorizationBearer
Bearer authentication of the form Bearer <token>, where token is your auth token.
Path parameters
resource
The resource type of the permission to detach.
action
The action of the permission to detach.
role_id
The ID of the custom role.
Headers
X-Penny-As-Business
Act on behalf of another business that has granted you access. Requires the business:act_as permission.
Response
The updated custom role.
role_id
Unique identifier for this role: role_… for custom roles, global_role_… for preset roles.
version
Monotonically increasing version counter for optimistic concurrency control.
version_time
Timestamp of the most recent version update.
type
Whether this is a custom role owned by your business (business) or a preset role Penny provides for every business (global).
Allowed values:
name
Human-readable name for the role.
description
Human-readable description of the role’s purpose and granted access.
active
Whether this role is currently active and can be assigned.
business_id
The business this role is scoped to.
permissions
The set of permissions granted to principals holding this role.
Errors
400
Bad Request Error
401
Unauthorized Error
403
Forbidden Error
404
Not Found Error
422
Unprocessable Entity Error
429
Too Many Requests Error
500
Internal Server Error