email-verification

POST `/api/v0/main-frontend/email-verification/verify` - Spends a mailed code and records the proof. Authenticated and scoped to the caller's own account, so the code is the only secret involved and it never has to identify anybody on its own.

Changed on
post/api/v0/main-frontend/email-verification/verify

Request

  • The document declares no server URL.
  • Auth: none declared

Request body

codestring required

Response

Outcome of submitting the code

'verified' | 'already_verified' | 'invalid' required

Outcome of submitting a code. Wrong, expired, superseded and spent are one value: they are indistinguishable to someone typing digits, and telling them apart only helps a guesser.

Changes