Skip to main content
POST
OAuth exchange code

Body

application/x-www-form-urlencoded
grant_type
string
required
Allowed value: "authorization_code"
code
string
required
Pattern: ^voc_[A-Za-z0-9_-]{43}$
redirect_uri
string
required
Required string length: 1 - 512
Pattern: ^[^\s\u0000-\u001f\u007f]+$
resource
string
required
Maximum string length: 512
code_verifier
string
required
Pattern: ^[A-Za-z0-9._~-]{43,128}$
client_id
string
Required string length: 1 - 512
Pattern: ^[^\s\u0000-\u001f\u007f]+$
client_secret
string
Required string length: 1 - 512
client_assertion
string
Required string length: 1 - 3072
client_assertion_type
string
Allowed value: "urn:ietf:params:oauth:client-assertion-type:jwt-bearer"

Response

Opaque access token; store privately. Cache-Control: no-store

token_type
any
required
expires_in
integer
required
Required range: 1 <= x <= 2592000
scope
string
required