Reject submitted policy version
Transitions a submitted policy version back to draft with a required human-readable reason. Blocks when actor == maker and maker-checker enforcement is enabled.
Authorizations
MeshQu API key passed as a bearer token: Authorization: Bearer mqu_…. Mint one in the console (Settings → API keys).
Tenant UUID for multi-tenant isolation. Required on all authenticated routes — validated before authentication (middleware/tenant.ts), so a missing or non-UUID header returns 400 (MISSING_TENANT_ID / INVALID_TENANT_ID) before the API key is checked.
Body
Required human-readable rejection reason. Must contain at least one non-whitespace character. Surfaced in the audit timeline and the draft banner.
1 - 2000.*\S.*Response
Default Response
Lifecycle status: draft → submitted → ratified → superseded (or back to draft on reject)
draft