User

Send a password-reset link to a user

Mails the user a one-time password-reset link `FRONTEND_HOST/auth/sign-in?uuid=…` (subject "Password reset first stage"); the link is spent by `POST /api/v2/auth/reset-password {"uuid"}`, which mails a new password. Any holder of `UserRecoveryPassword`, on a member of their own workspace whose rank there is STRICTLY lower; never on themselves. Global roles may act in any workspace (`X-Workspace-Id`). A soft-deleted account answers 404 like an unknown id. No request body. Replaces `POST /api/v1/user/recovery-password`.

POST
/api/v2/users/{id}/recovery-password

Authorization

BearerAuthObject
AuthorizationBearer <token>

In: header

Path Parameters

id*integer

Response Body

application/json

curl -X POST "https://example.com/api/v2/users/0/recovery-password"
Empty
Empty
{  "message": {    "error": "You are not allowed to perform this action."  }}
Empty