Login
Obtains a Bearer token required for authenticated requests.
Bot Protection
This endpoint requires a valid Cloudflare Turnstile token when bot protection is enabled. See the Turnstile Integration Guide for frontend setup instructions.
HTTP Request
POST /api/v1/auth/login
| Parameter | Description |
|---|---|
email string | Email address |
password string | User's password |
turnstileToken string | Cloudflare Turnstile verification token. |
Response
200 OK
json
{
"data": {
"token": "3|4UgEk8lXwa1D6rbYO8fqMfKhgnwdRuSqZb4Woz083ad0785f"
}
}The token is a Bearer token that must be included in the Authorization header for all authenticated requests:
plaintext
Authorization: Bearer 3|4UgEk8lXwa1D6rbYO8fqMfKhgnwdRuSqZb4Woz083ad0785fError Handling
401 Unauthorized — the email/password combination is wrong:
json
{
"message": "These credentials do not match our records."
}422 Unprocessable Content — email or password is missing, or the Turnstile token is invalid.
429 Too Many Requests — more than 5 attempts per minute from one IP address.