Creating User Tokens using Company Token
Creating User Tokens using Company Token
Exchange a Company Bearer token for a User-scoped access token. Pass your Company-level Bearer token in the Authorization header. The response returns a full token set scoped to the specified user session.
POST
Creating User Tokens using Company Token
Creating user tokens API schema
| Property | Type | Description |
|---|---|---|
user_input | String | Super Admin email address. |
scope | String | Permission scope being assigned/validated (e.g., user_session). |
Response Schema
| Path | Type | Description |
|---|---|---|
| access_token | string | Newly generated access token for the user. |
| token_type | string | Always "bearer". |
| expires_in | number | Token validity duration in seconds. |
| refresh_token | string | Token used to regenerate a new access token once expired. |
| access_token_expiry | number | Epoch timestamp (ms) when the access token expires. |
| refresh_token_expiry | number | Epoch timestamp (ms) when the refresh token expires. |
Authorizations
Authorization: Bearer <access_token>
Body
application/json
Response
User-scoped tokens issued successfully.
Newly generated access token.
Example:
"bearer"
Access token validity in seconds.
New refresh token (old one is immediately invalidated).
Epoch timestamp (ms) when the access token expires.
Epoch timestamp (ms) when the refresh token expires.
