seahaven-ap/packages/api/openapi/paths/me.yaml
Adam Moussa bbfa6e4a3c
feat(api): switch live auth to host cookie BFF
Replace Bearer as the documented session path with Cognito hosted UI plus __Host-ap_* cookies so the SPA can call /api with credentials include.
2026-09-22 12:39:00 -04:00

53 lines
1.7 KiB
YAML

get:
tags:
- Session
summary: Return the authenticated caller profile
description: Upserts the caller into users on first request and returns the stored profile used by the SPA session smoke path.
operationId: get-api-me
security:
- cookieAuth: []
responses:
"200":
description: Authenticated user profile.
content:
application/json:
schema:
$ref: ../components/schemas.yaml#/MeResponse
example:
id: 11111111-1111-4111-8111-111111111111
email: admin@seahavenind.com
name: Dev Admin
role: admin
"401":
description: Missing or invalid session cookie.
content:
application/json:
schema:
$ref: ../components/schemas.yaml#/Error
example:
error:
code: UNAUTHENTICATED
message: Missing id token.
correlationId: 11111111-1111-4111-8111-111111111111
"409":
description: Email is already linked to a different Cognito subject.
content:
application/json:
schema:
$ref: ../components/schemas.yaml#/Error
example:
error:
code: CONFLICT
message: Email admin@seahavenind.com is already linked to a different identity.
correlationId: 11111111-1111-4111-8111-111111111111
"404":
description: Not found.
content:
application/json:
schema:
$ref: ../components/schemas.yaml#/Error
example:
error:
code: NOT_FOUND
message: Not found.
correlationId: 11111111-1111-4111-8111-111111111111