# hush revoke

To prevent another IAM user in the same AWS account from accessing your secret, use the revoke command like this:

yarn hush revoke joern-prod <user-identifier>

user-identifier has to be either an AWS ARN or a username for a user that shares an AWS account with you.

Please keep in mind that users with higher privileges than you might still be able to access the secrets.