Change (or set) the account's password (session only).
const url = 'https://api.opdns.io/v1/auth/password';const options = { method: 'POST', headers: { cookie: 'opdns_session=<opdns_session>', 'Content-Type': 'application/json' }, body: '{"current_password":"example","new_password":"example"}'};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request POST \ --url https://api.opdns.io/v1/auth/password \ --header 'Content-Type: application/json' \ --cookie opdns_session=<opdns_session> \ --data '{ "current_password": "example", "new_password": "example" }'current_password is required when the account has a password; an account
without one (passkeys only) needs a sign-in within the last five minutes
instead (reauth_required). Every other session is revoked and a notice is
emailed. Attempts are limited per account.
Authorizations
Section titled “Authorizations”Request Bodyrequired
Section titled “Request Bodyrequired”object
12 to 128 characters (Unicode code points), no composition rules.
Examplegenerated
{ "current_password": "example", "new_password": "example"}Responses
Section titled “Responses”Changed.
object
Other sessions signed out.
Examplegenerated
{ "revoked": 1}Malformed request.
object
Stable machine code.
object
Seconds, repeating the Retry-After header (rate limits, offline nodes).
Example
{ "type": "https://opdns.io/problems/bad_request", "title": "Bad Request", "status": 400, "code": "bad_request", "detail": "invalid JSON body", "request_id": "5f2c9a0e7b1d4c38"}Not authenticated.
object
Stable machine code.
object
Seconds, repeating the Retry-After header (rate limits, offline nodes).
Example
{ "type": "https://opdns.io/problems/unauthenticated", "title": "Unauthorized", "status": 401, "code": "unauthenticated", "detail": "authentication required", "request_id": "5f2c9a0e7b1d4c38"}Authenticated but not allowed: insufficient_scope, session_required, csrf_rejected, mfa_enrolment_required (restricted session), mfa_required (an operator action, or an admin-scoped token, from a session signed in with the password alone; not in dev), reauth_required (sign in again within five minutes), account_pending_deletion (the account is in its deletion cooling-off).
object
Stable machine code.
object
Seconds, repeating the Retry-After header (rate limits, offline nodes).
Example
{ "type": "https://opdns.io/problems/insufficient_scope", "title": "Forbidden", "status": 403, "code": "insufficient_scope", "detail": "the token lacks the profiles:write scope", "request_id": "5f2c9a0e7b1d4c38"}The request failed validation (validation_failed), or the new password was
refused: password_too_short (under 12 characters), password_too_long (over
128). Length is counted in Unicode code points and the password is used as
sent (no normalisation). A password problem alongside other invalid fields is
validation_failed listing them all. errors names the password field.
object
Stable machine code.
object
Seconds, repeating the Retry-After header (rate limits, offline nodes).
Example
{ "type": "https://opdns.io/problems/password_too_short", "title": "Unprocessable Content", "status": 422, "code": "password_too_short", "detail": "the password must be at least 12 characters", "errors": [ { "field": "password", "message": "at least 12 characters" } ], "request_id": "5f2c9a0e7b1d4c38"}Rate limited (rate_limited).
object
Stable machine code.
object
Seconds, repeating the Retry-After header (rate limits, offline nodes).
Example
{ "type": "https://opdns.io/problems/rate_limited", "title": "Too Many Requests", "status": 429, "code": "rate_limited", "detail": "too many requests", "request_id": "5f2c9a0e7b1d4c38", "retry_after": 6}