# tax.packages.revoke

Turn off a package's download links: { packageId, linkId? (one person's link; leave it out to turn off every link), idempotencyKey }. The team can still download the package in Oatmilk until it expires.

`POST /api/v1/accounting/tax.packages.revoke`

Permissions: `accounting:read`, `accounting:write` · Roles: admin, finance · Idempotency key required · Destructive: confirm with a person first

MCP tool: `accounting_tax_packages_revoke`

## Fields

| Field | Type | Required | Notes |
| --- | --- | --- | --- |
| `packageId` | string (ID) | Yes | The ID of the related record. |
| `linkId` | string (ID) |  | The ID of the related record. |
| `idempotencyKey` | string | Yes | Any unique text you generate once per intended change, so a retried request only happens once. Send it as the Idempotency-Key header instead if you prefer; if you send both they must match. 8–200 characters. |

## Example request

```bash
curl https://app.getoatmilk.com/api/v1/accounting/tax.packages.revoke \
  -H "Authorization: Bearer $OATMILK_API_KEY" \
  -H "Content-Type: application/json" \
  -H "Idempotency-Key: $(uuidgen)" \
  -d '{
  "packageId": "7f0f6c1e-1c1f-4b5e-9c8d-2f5e8e3c1a10"
}'
```

Reference page: https://app.getoatmilk.com/docs/api/tax.packages.revoke
