Skip to main content
POST
Confirm it's you — ask for the code that gives a course-page session its full rights

Authorizations

Authorization
string
header
required

JWT token passed in authorization header

Response

The challenge to confirm with (the shape of a sign-in's mfaRequired answer).

mfaRequired
boolean
Example:

true

challengeId
string

Pass to /api/auth/mfa-resend ("Send me a code") and /api/auth/mfa-verify.

factor
enum<string>
Available options:
email,
totp
availableFactors
string[]
maskedEmail
string
Example:

"j***@school.example"

codeSent
boolean

false until "Send me a code".

unscope
boolean

Always true — this challenge lifts the session's limits.

Example:

true

undeliverable
boolean

Present and true when the account's address was made up by the course page and cannot receive a code — open Pria outside the course page to confirm.