Refresh Session
/v1/auth/refreshPart of Auth.
Revokes the current token and issues a new one. Accepts recently-expired tokens within the grace period.
Authentication
This operation does not require an API key.
Example request
curl -X POST "https://api.robosystems.ai/v1/auth/refresh"Responses
200 Successful Response
| Field | Type | Description |
|---|---|---|
userrequired | object | User information |
orgoptional | object | Organization information (personal org created automatically on registration) |
messagerequired | string | Success message |
statusoptional | string | Login flow state: authenticated (token present), or a passkey MFA step is required before a session is issued (mfa_token present) One of: Default: |
mfa_tokenoptional | string | Short-lived token authorizing the MFA second step or forced enrollment; present only when status is not 'authenticated' |
tokenoptional | string | JWT authentication token (optional for cookie-based auth) |
expires_inoptional | integer | Token expiry time in seconds from now |
refresh_thresholdoptional | integer | Recommended refresh threshold in seconds before expiry |
| Status | Meaning |
|---|---|
| 400 | Invalid request |
| 429 | Rate limit exceeded |
| 500 | Internal server error |