parental-consent
parental-consent

Sign Page

The document and who it concerns.

An invalid, used or expired token gets exactly one answer and no detail, the way /auth/activation/{token} does. A guardian who mistyped and a stranger probing for links must not be able to tell each other apart.

The student is named, because a parent has to know which child this is about and already knows their name. Nothing else about the account is exposed: no email, no school identifiers beyond the school's name.

get/parental-consent/sign/{token}

Path parameters

tokenstring required

Response

Successful Response

{"stackTrail":"paths:/parental-consent/sign/{token}:get:responses:200:content:application/json:schema","oasType":"schema","type":"unknown"}

Changes