Authenticator app
Verify Authenticator App Challenge
Verify a challenge when enrolling a authenticator app authenticator or when re-authenticating with an existing authenticator app authenticator
POST
Verify Authenticator App Challenge
Authorizations
Use a short-lived token obtained from the Server API's Track Action endpoint. The token is valid for 10 minutes and should be passed in the Authorization header as 'Bearer {token}'.
Body
application/json
The TOTP code inputted by the user.
Response
OK
True if the inputted TOTP is correct.
A new short-term token with scopes to manage authenticators (e.g. add secondary authenticators, remove authenticators, view or regenerate recovery codes). Only present if the challenge succeeded.
Available options:
CODE_INVALID_OR_EXPIRED, MAX_ATTEMPTS_EXCEEDED Verify Authenticator App Challenge

