Skip to content
Fah Swe RTC Docs
Site
ImplementedLast verified 2026-10-10

Token response reference

Fields returned by POST /v1/rtc/tokens and what each one is for.

Response fields

  • project_id, app_id — derived from your credential, never from the request
  • room_id, user_id, role — echoed from your request after validation
  • publish_streams, subscribe_streams, subscribe_room — what the grant allows
  • issued_at, expires_at — Unix seconds; default lifetime 10 minutes, maximum 1 hour
  • media.grant, media.key — pass to the SDK; never log them
  • media.sfu_host, media.sfu_port — where the SDK connects
  • media.encryption — the media cipher suite
  • media.revocation_handle — keep on your server to revoke the grant
  • turn (when requested) — username, credential, uris, ttl_seconds
  • signaling (when requested) — token and url

Roles

  • host
  • coHost
  • speaker
  • participant
  • audience

Revoking

POST /v1/rtc/tokens/revoke with {"revocation_handle": "..."} ends the grant. The response status is revoked, or expired if it had already ended.

Source references

  • apps/local-site/lib/product-status.ts
  • sdk/android
  • token-service
Was this page helpful?