Auth Configuration

Render default managed auth page

Changed on

Public HTML endpoint for the managed login page. Requires Accept: text/html.

get/projects/{id}/auth/hosted

Request

  • Base URL: https://api.volcano.dev
  • URL: https://api.volcano.dev/projects/{id}/auth/hosted
  • Auth: none required

Path parameters

idstring uuid required

Project ID

Query parameters

action'login' | 'signup' | 'forgot-password' | 'device'

Optional deep-link action for the unified hosted page. Ignored when a custom login page is configured. action=device renders the device authorization approval UI inline (no redirect to any external app); it signs the user in and calls POST /auth/device/verify.

user_codestring

Device user code (from POST /auth/device/authorize) used with action=device.

anon_keystring

Project anon key used by built-in managed auth flows (required for login/signup/device actions).

statestring

Opaque one-time nonce generated by the client SDK before redirecting here. On successful login/signup it is echoed back in the post-auth redirect fragment as state, so the SDK can bind the returned session to the flow it initiated (login-CSRF / session-fixation defense). The SDK rejects a returned session whose state does not match.

Response

Hosted auth page HTML

Changes