Submit the current interaction.
- Submit the verified user identity to the OIDC provider for further authentication (SignIn and Register).
- Update the user's profile data if any (SignIn and Register).
- Reset the password and clear all the interaction records (ForgotPassword).
- Complete a step-up interaction: the interaction must have reached the authentication context class the authorization request selected, and only the methods it established are written to the account, with no sign-in side effect.
Responses
-
The interaction has been successfully submitted.
-
Bad Request
-
Multi-Factor Authentication (MFA) is enabled for the user but has not been verified (SignIn and Register).
- A sign-in with requestedacr_valuesstill lacks a Logto-verifiable first factor (session.step_up.require_verification); the response data carries the selected authentication context class, the available methods, and the masked identifiers.
- The achieved authentication context does not satisfy the requested authentication context class (session.step_up.acr_not_satisfied); no interaction result is written. -
The user has not been identified.
-
The user profile can not been processed, check error message for more details.
- The profile data is invalid or conflicts with existing user data.
- Required profile data is missing.
- The profile data is already in use by another user account.
curl \
--request POST 'https://[tenant_id].logto.app/api/experience/submit'
{
"redirectTo": "string"
}