Begin enabling two-factor
POST/api/v1/profile/mfa
Generates the secret and answers with what the authenticator app needs.
This does not turn it on. Two-factor is only active once a code from the app is confirmed through the verify endpoint — otherwise a mistyped setup would lock you out.
Refused if two-factor is already enabled.
Responses
- 200
- 403
- 422
Setup started
Two-factor is not available on this installation
Two-factor is already enabled