DocumentationAPI reference

Rust · 0.1.0

Auth Service

Start, inspect, refresh and end browser-style sessions; use PATs for scripts.

Session sequence

SignIn returns a short-lived access token and sets a refresh cookie. GetCurrentUser uses the bearer access token or PAT. RefreshToken consumes the refresh cookie and rotates the session; it does not take a refresh token in JSON. SignOut requires authentication and clears the cookie; PAT revocation is a separate UserService operation. A browser client must preserve the cookie across sign-in and refresh.

Operations