Oauth Callback
GET/api/v1/auth/oauth/:provider/callback
Handle OAuth callback from provider. Exchanges code for tokens and creates/links user account.
OAuth state is always invalidated on callback (success, error, or exception) to prevent replay attacks. State tokens are one-time use for CSRF protection.
Request
Responses
- 200
- 401
- 403
- 404
- 422
OK
Unauthorized
Forbidden
Not Found
Validation Error