MonetaryAI / Docs
API ReferenceAccount security

Confirm email 2FA enrollment

Requires current password and acknowledged ENABLE code. Invalidates every session and access token for the global identity; login again with password and email code. Wrong, expired, unacknowledged, foreign or reused challenges return 401.

POST
/api/v1/me/security/email-2fa/enable

Authorization

bearerAuth
headerAuthorizationBearer <token>

Obtained from POST /api/v1/auth/login, on the tenant's own subdomain. Presenting it on another tenant's subdomain is a 403.

Request Body

application/json
  1. body
challengeId*string
Formatuuid
code*string
Match[0-9]{8}
Length1 <= length
currentPassword*string
Formatpassword
Length0 <= length <= 72

Response Body

Email 2FA enabled; login again

curl -X POST 'https://api.monetaryai.uz/api/v1/me/security/email-2fa/enable' \  -H 'Content-Type: application/json' \  -d '{  "challengeId": "007cfdcc-a46d-4340-a4c6-216ec2e4009c",  "code": "string",  "currentPassword": "pa$$word"}'
Empty