The authenticated account.
const url = 'https://api.opdns.io/v1/auth/me';const options = {method: 'GET', headers: {cookie: 'opdns_session=<opdns_session>'}};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request GET \ --url https://api.opdns.io/v1/auth/me \ --cookie opdns_session=<opdns_session>Token scope: account:read. auth.scopes lists every scope for a session.
Authorizations
Section titled “Authorizations”Responses
Section titled “Responses”Current principal.
object
object
Operator account; may hold the admin scope.
Set while a deletion is pending; the account is erased at this time unless cancelled.
object
object
A restricted session may only enrol a second factor (TOTP setup/confirm,
passkey registration, GET /v1/auth/me, logout); every other call is 403
mfa_enrolment_required. Set for password-only sign-in after the grace
period, outside dev.
When password-only sign-in becomes restricted; null once a second factor exists, and in dev.
object
Mail to the address bounced or was reported as spam; prompt the user to update it.
Example
{ "account": { "role": "owner" }, "auth": { "method": "session", "scopes": [ "profiles:read" ], "session": { "auth_method": "password" } }}Not authenticated.
object
Stable machine code.
object
Seconds, repeating the Retry-After header (rate limits, offline nodes).
Example
{ "type": "https://opdns.io/problems/unauthenticated", "title": "Unauthorized", "status": 401, "code": "unauthenticated", "detail": "authentication required", "request_id": "5f2c9a0e7b1d4c38"}Authenticated but not allowed: insufficient_scope, session_required, csrf_rejected, mfa_enrolment_required (restricted session), mfa_required (an operator action, or an admin-scoped token, from a session signed in with the password alone; not in dev), reauth_required (sign in again within five minutes), account_pending_deletion (the account is in its deletion cooling-off).
object
Stable machine code.
object
Seconds, repeating the Retry-After header (rate limits, offline nodes).
Example
{ "type": "https://opdns.io/problems/insufficient_scope", "title": "Forbidden", "status": 403, "code": "insufficient_scope", "detail": "the token lacks the profiles:write scope", "request_id": "5f2c9a0e7b1d4c38"}