---
title: "Changes to Refresh access token using the httpOnly cookie."
method: POST
path: "/api/v1/auth/refresh"
---

# Changes to Refresh access token using the httpOnly cookie.

`POST /api/v1/auth/refresh`

> Every recorded change to this endpoint, newest first.

## Timeline

Changed in 3 of 176 revisions.

- **2026-08-16** `637f3db48cae` — 3 info
- **2026-04-23** `503a10ab48c2` — 1 info
- **2026-03-10** `1ec5a2e9d039` — 1 breaking

## Changes

- **2026-08-16** `637f3db48cae` — 3 info
  - added the new optional `header` request parameter `CardinalTolkien`
  - added the non-success response with the status `401`
  - added the non-success response with the status `503`
- **2026-04-23** `503a10ab48c2` — 1 info
  - endpoint added
- **2026-03-10** `1ec5a2e9d039` — 1 breaking
  - api path removed without deprecation

---

[Operation](https://skmtc.dev/cardinalapps/apis/cardinal-media-server-api/docs/api/v1/auth/refresh/post.md) · [API](https://skmtc.dev/cardinalapps/apis/cardinal-media-server-api.md) · [Page](https://skmtc.dev/cardinalapps/apis/cardinal-media-server-api/changes/api/v1/auth/refresh/post)
