Body
application/json
The OTP code inputted by the user.
Response
OK
True if the inputted OTP code matches the code which was sent.
A new short-term token with scopes to manage authenticators (e.g. add secondary authenticators, remove authenticators, view or regenerate recovery codes). Only present if the challenge succeeded.
Available options:
CODE_INVALID_OR_EXPIRED
, MAX_ATTEMPTS_EXCEEDED