A new ExpirationDetails object has been added to the RoleAssignment schema, containing an expireTime field (ISO 8601 timestamp). By including this in a RoleAssignment resource, developers can now implement temporary access controls and automated privilege revocation directly through the API, reducing the need for external cleanup scripts or manual intervention.
Medium Impact
Docs