Skip to content
Console
Menu

Queues

Workflows

Getting Started

Authentication

KV Store

Sessions

A Session is an opaque Auth session of an end user, issued by a sign-in ceremony.

A Session is an opaque Auth session of an end user, issued by a sign-in ceremony. Sessions are revoked, never deleted; revocation is a CAEP signal delivered through Sylphx Events.

Service Sylphx Auth · Resource type auth.sylphx.com/Session · Name pattern orgs/{org}/projects/{project}/envs/{env}/end_users/{end_user}/sessions/{session} · Shape record

#Fields

FieldTypeWhat it is
namestringorgs/{org}/projects/{project}/envs/{env}/end_users/{end_user}/sessions/{session}.
uidstringses_<cell><ulid>; never reused. Output only.
metaResourceMetaResource metadata.
stateSessionStateThe session state. Output only. One of active, revoked, expired.
assuranceAuthMethodHow the session was established. Output only. One of password, magic_link, email_otp, passkey, totp, oidc, saml.
mfaboolWhether a second factor was presented. Output only.
active_organizationstringThe active customer organization. Output only.
oauth_clientstringThe OAuth client the session signed in to, if any. Output only.
ip_addressstringThe client IP at sign-in. Output only.
user_agentstringThe user agent at sign-in. Output only.
last_active_timetimestampThe last authenticated use. Output only.
expire_timetimestampWhen the session expires. Output only.
revoke_timetimestampWhen the session was revoked. Output only.
revoke_reasonSessionRevokeReasonWhy the session was revoked. Output only. One of sign_out, user, admin, session_limit, recovery, suspended, deleted, fingerprint.

#Methods

Every method of the collection, in the registry's order, with the scope it needs. The full request, response and examples are one link away.

MethodCallWhat it does
GETgetGets a session.
GETlistLists sessions.
POSTrevokeRevokes a session.

#get

Gets a session.

GET https://api.sylphx.com/v1/orgs/acme/projects/shop/envs/production/end_users/end-user/sessions/session · scope auth:read · effect read · Request, response and examples

#list

Lists sessions.

GET https://api.sylphx.com/v1/orgs/acme/projects/shop/envs/production/end_users/end-user/sessions · scope auth:read · effect read · paginated · Request, response and examples

#revoke

Revokes a session.

POST https://api.sylphx.com/v1/orgs/acme/projects/shop/envs/production/end_users/end-user/sessions/session:revoke · scope auth:write · effect destructive · Request, response and examples