# Account: Revoke an agent runner Contract status: **human-session only**. Launch state: **Live**. Revokes a tenant runner through the canonical dispatch convergence owner and removes live credential material. Operation ID: `revokeHumanAgentRunner` Method and path: `POST /api/account/agent-security/runners/{runnerRef}/revoke` Domain owner: `account` Authentication class: **human session** Required scope: `human session` Idempotency required: **yes** Availability in the generated contract: **available** Reason code: `human_session_only` The route is implemented. Availability is account-specific and can change after this document is fetched. This endpoint uses the signed-in human web session. An agent bearer token cannot call it. Request schema: `revokeHumanAgentRunner.request.v1`. Response schema: `revokeHumanAgentRunner.response.v1`. ## Transport projections - REST: **implemented** at `https://neotask.ai/api/account`. - MCP: **not_exposed** (reason `human_session_only`). - CLI: **not_exposed** (reason `human_session_only`). Read [authenticated capabilities](https://neotask.ai/api/agent/v1/capabilities) before using this operation.