← Documentation

Credential Recovery

Recovery replaces credentials; existing secrets are never recovered or emailed.

{
  "version": "2026-08-v6",
  "request": "POST /v1/security/recovery returns a generic anti-enumeration response.",
  "verify": "A strong, short-lived, single-use email link proves control of the verified email channel.",
  "review_options": [
    "mine",
    "not_mine",
    "secure"
  ],
  "completion": "Denied or uncertain activity revokes the affected key or all keys and may issue a new secret once.",
  "high_risk": "High/critical events require external step-up or manual review before replacement."
}

Machine-readable response