For the complete documentation index, see llms.txt.

chainctl policies override delete

  2 min read

chainctl policies override delete

Delete a policy override.

Synopsis

Delete a policy override to revoke a waiver.

Deletion happens immediately and is not confirmed: there is no prompt and no –force flag, so the override is removed as soon as you run the command. Once removed, the targeted artifact is again subject to the policy’s result.

Pass the override’s full ID (a UIDP) as the positional argument; it is globally unique, so no –parent is needed. Use “chainctl policies override list” to find it.

chainctl policies override delete OVERRIDE_ID [flags]

Examples

  # Delete an override by ID
  chainctl policies override delete <override-id>

Options inherited from parent commands

      --api string         The url of the Chainguard platform API. (default "https://console-api.enforce.dev")
      --audience string    The Chainguard token audience to request. (default "https://console-api.enforce.dev")
      --config string      A specific chainctl config file. Uses CHAINCTL_CONFIG environment variable if a file is not passed explicitly.
      --console string     The url of the Chainguard platform Console. (default "https://console.chainguard.dev")
      --force-color        Force color output even when stdout is not a TTY.
  -h, --help               Help for chainctl
      --issuer string      The url of the Chainguard STS endpoint. (default "https://issuer.enforce.dev")
      --log-level string   Set the log level (debug, info) (default "ERROR")
  -o, --output string      Output format. One of: [csv, env, go-template, id, json, markdown, none, table, terse, tree, wide]
  -v, --v int              Set the log verbosity level.

SEE ALSO

Last updated: 2026-07-31 18:12