Blog
New Capability: Personal Access Token Expiration Support
Author
Sesche2
SailPoint
This Capability is brought to you by Idea GOV-I-4087
Description
Personal Access Token expiration support reduces potential security risks from compromised tokens and makes it easier to manage appropriate access to Identity Security Cloud.
Problem
Personal access tokens that never expire create a potential security risk if compromised, giving bad actors ongoing access to sensitive identity information.
Solution
With this release, personal access tokens will be created with an expiration date, giving them a default 6-month lifespan, reducing risk. Token owners can choose a shorter or longer expiration period, or even make it never expire. (Not recommended)
Who is affected?
All Identity Security Cloud customers.
Important dates
Sandbox availability: January 26, 2026
Production rollout: February 2-4, 2026
To ask questions and learn more please visit the Developer Community.