Authentication
User authentication and session management
📄️ Sign in with email and password
Sign in with email and password
📄️ Refresh the access token from the session
Issues a new access JWT when the request carries a valid server session cookie
📄️ Start a password-recovery flow
Start a password-recovery flow
📄️ Validate a password-recovery hash
Validate a password-recovery hash
📄️ Complete password recovery with a hash
Complete password recovery with a hash
📄️ Confirm an account via an emailed hash
Confirm an account via an emailed hash
📄️ Register a new account
Register a new account
📄️ Sign out the current session
Sign out the current session
📄️ Get current auth/session info
When `Api.ChatAgentAPIKeys` is configured, requests that include `X-SP-Balancer-Client: balancer` must also send a valid `X-SP-Chat-Agent-Key` (chat service → User API). Browser clients omit these headers.
📄️ Sign in or link via Google OAuth
Sign in or link via Google OAuth
📄️ Unlink the Google account
Unlink the Google account