Skip to main content

Begin enabling two-factor

POST 

/api/v1/profile/mfa

Generates the secret and answers with what the authenticator app needs.

This does not turn it on. Two-factor is only active once a code from the app is confirmed through the verify endpoint — otherwise a mistyped setup would lock you out.

Refused if two-factor is already enabled.

Responses​

Setup started