Login after authentication
POST/login-srv/verification/login
Completes login after a successful passwordless / MFA verification.
Send application/x-www-form-urlencoded fields (requestId, status_id, verificationType, and masked q / sub). A JSON body is not the supported contract for this step.
Use the masked subject from initiation / MFA setup — not the real account sub. Success is often an HTTP 302 to redirect_uri with an authorization code (or token, depending on the authorize request).
Request
Responses
- 200
- 302
This API completes the login after a user successfully completed the passwordless authentication
Redirect response to redirect_uri