Skip to main content
POST
Generate a new auth token and session for the user
Exchanges client credentials (client ID and client secret) for an access token using HTTP Basic Authentication. The client ID is used as the username and the client secret as the password, encoded as Base64 in the format: Basic base64(clientId:clientSecret). Authorization is done using the “Basic” format within the “Authorization” header. Assuming client id is “sean@example.com” and client secret is “MyVeryCoolSecretPleaseDontSteal”, the format of the unencoded string is as follows:
Then base64 encode the string (in javascript this is Window: btoa() method - Web APIs | MDN) to get the following:
This can be done in the browser console with the methods btoa() and atob() to confirm these values during testing.

Authorizations

Authorization
string
header
required

HTTP Basic authentication for the token endpoint. Use the client ID as the username and the client secret as the password.

Body

application/json

Client credentials for OAuth2 client credentials flow.

grantType
enum<string>
required

OAuth2 grant type

Available options:
client_credentials

Response

Successfully authenticated and token issued

accessToken
string
required

JWT access token

expiresIn
number
required

Token expiration time in seconds. Currently all tokens generated last 15 minutes.

tokenType
enum<string>
required

Type of the token

Available options:
Bearer
access_token
string
required

JWT access token

expires_in
number
required

Token expiration time in seconds. Currently all tokens generated last 15 minutes.

token_type
enum<string>
required

Type of the token

Available options:
Bearer