Skip to main content

VerifyMFA verifies MFA code during OAuth login.

POST 

/api/v1/auth/oauth/mfa/verify

Called after CompleteLogin returns mfa_required=true.

Parameters

  • login_challenge: Required, original login challenge
  • user_id: Required, from CompleteLogin response
  • code: Required, TOTP code, OTP code, or backup code
  • remember: Whether to remember session

Response

  • redirect_to: Redirect URL to continue OAuth flow

Errors

  • UNAUTHENTICATED: Invalid MFA code

Request

Responses

A successful response.