Discovery API:admin.directory_v1
Medium Impact
Docs

Time-bound Role Assignments in Directory API

A new ExpirationDetails object has been added to the RoleAssignment schema, containing an expireTime field (ISO 8601 timestamp). By including this in a RoleAssignment resource, developers can now implement temporary access controls and automated privilege revocation directly through the API, reducing the need for external cleanup scripts or manual intervention.