API referenceC L I
Browser handoff: deny
First-party browser only: both the request URL origin and exact Origin header must match consoleOrigin; a separate submissionToken is required — the proof from the approval URL's fragment, or, for a login, the user code the terminal shows. Identity approval (a claim or a login) also requires an interactive human session; registration is limited to a valid pending claim or login. Provider secret values are write-only. Anyone holding the link or the code may decline, signed in or not.
Path Parameters
id*string
Request Body
application/json
TypeScript Definitions
Use the request body type in TypeScript.
Response Body
application/json
application/json
application/json
application/json
application/json
application/json
application/json
application/json
curl -X POST "https://example.com/v1/cli/browser/string/deny" \ -H "Content-Type: application/json" \ -d '{ "submissionToken": "string" }'{ "state": "denied", "message": "string"}