Skip to content
Proud to collaborate with Microsoft for Startups

identity.end-user.member-seat.reconcile ​

Suspend org-member end-user seats whose member left the organization (sweep)

Suspend member end-user seats whose member no longer qualifies: removed from the organization, deleted, or the app is no longer active. Safe to schedule.

Caller: a human org ADMIN/OWNER (scoped to their organization), or a platform system sweep (all organizations unless organization_uuid is given). A failed lookup never suspends anything.

Inputs: organization_uuid (optional for the system sweep), dry_run, limit. Outputs: scanned, suspended_count, eligible_count, unavailable_count, suspensions [{end_user_uuid, member_user_uuid, identity_app_uuid, code, reason}], dry_run.

Overview ​

PropertyValue
Workflow typeAtomic
LibraryApp-identity
Version1.0

Input Schema ​

FieldTypeRequiredDefaultDescription
actorstringNo——
organization_uuiduuidNo——
dry_runbooleanNo——
limitintegerNo——

Output Schema ​

FieldTypeRequiredDefaultDescription
scannedintegerNo——
suspended_countintegerNo——
eligible_countintegerNo——
unavailable_countintegerNo——
suspensionslistNo——
dry_runbooleanNo——
failure_reasonstringNo——
failure_typestringNo——
failed_actionstringNo——
failed_at_statestringNo——
reasonstringNo——

States ​

StateInitialTerminalSuccessAuto-advanceDescription
pendingYesNo—execute—
completedNoYesYes——
failedNoYesNo——

State Diagram ​

Transitions ​

FromActionToDescription
pendingexecutecompleted—
* (any state)failfailed—

API Usage ​

bash
POST /api/workflows/start
Content-Type: application/json

{
  "workflow_type": "identity.end-user.member-seat.reconcile",
  "initial_data": {
    "actor": "value",
    "organization_uuid": "value",
    "dry_run": true,
    "limit": 123
  }
}