wbhk
account_suspended
ZyINS POSTs this event when an account is suspended, preventing all credentials from authenticating; existing sessions are revoked within 24 hours, and the suspension is reversible. Use it to gate downstream access by disabling UI or revoking seats. Read the reason field in the payload to distinguish billing vs. policy suspension. Verify X-ZyINS-Signature in constant time before acting on the body. Delivery is at-least-once — deduplicate on the event's id field in the JSON body.
200Acknowledge receipt with HTTP 200 (empty body allowed).