Skip to main content
DELETE
Delete a source (two-phase)

Authorizations

Authorization
string
header
required

Pass Authorization: Bearer scripe_sk_live_<...> (or scripe_sk_test_<...> for test keys) on every request. Keys are scoped to a single workspace and can be revoked from the Scripe dashboard.

The same header also accepts an OAuth 2.1 access token (scripe_oat_*); both credentials share one scope vocabulary and every operation below documents the scope it requires. An API key can hold every scope named on this surface except webhooks:manage, which is grantable to OAuth tokens only today — the webhook-endpoint operations answer 403 scope_missing to every API key. Operations that name no scope accept any valid token of the workspace.

Headers

Scripe-Api-Version
string

Pin the API version. Format YYYY-MM-DD. Omit to receive the currently rolling default. Unknown versions return 400 version_unsupported.

Example:

"2026-08-10"

Path Parameters

sourceId
string
required
Example:

"src_a1b2c3d4e5f6g7h8"

Query Parameters

confirmationToken
string

Omit on the first call to receive the proposal. Repeat the call with the returned token to execute the delete.

Response

Without confirmationToken: the proposal (data.phase: "proposal") — nothing was deleted. With a valid token: the deletion result (data.deleted: true).

Phase one of the two-phase delete — nothing has been deleted. Names the blast radius AND what deliberately survives, so a caller expecting total erasure learns otherwise before confirming.

data
object
required