Skip to main content

Authentication Expiration Policy

To maintain account security, Grvt enforces the following authentication expiration rules based on access type:

Updated this week

Web Users

  • Session expires after 7 days

  • Users will need to log in again once the session expires

Mobile App Users

  • Session expires after 90 days

  • Re-authentication is required after expiration

API Keys

  • Authentication expires after 24 hours (1 day)

  • API requests must be re-signed with a valid key once expired

These expiration settings are designed to balance usability and security across different access methods.
​

If you experience authentication errors, please ensure your session or API signature is still valid before retrying.

Did this answer your question?