Blog

New Capability: Personal Access Token Expiration Support

Author

  • Sesche2

    SailPoint

This Capability is brought to you by Idea GOV-I-4087

Description

Personal Access Token expiration support reduces potential security risks from compromised tokens and makes it easier to manage appropriate access to Identity Security Cloud.

Problem

Personal access tokens that never expire create a potential security risk if compromised, giving bad actors ongoing access to sensitive identity information.

Solution

With this release, personal access tokens will be created with an expiration date, giving them a default 6-month lifespan, reducing risk. Token owners can choose a shorter or longer expiration period, or even make it never expire. (Not recommended)

Who is affected?

All Identity Security Cloud customers.

Important dates

Sandbox availability: January 26, 2026
Production rollout: February 2-4, 2026

To ask questions and learn more please visit the Developer Community.