Skip to main content
POST
Save a website login
Authentication: Authorization: Bearer <token> with Dashboard session, Pomerado MCP OAuth token, API key. Permission: logins:manage. Effect: Write: creates or changes something in your account. Errors: invalid_request (400), unauthorized (401), reauthentication_required (401), forbidden (403), site_login_exists (409), login_identity_conflict (409), legacy_duplicate_saved_logins (409), saved_login_unsettled (409), login_in_use (409), login_save_in_progress (409), request_too_large (413), invalid_credential (422), internal_error (500), acceptance_unknown (503), temporarily_unavailable (503). Every error has the same envelope.

Authorizations

Authorization
string
header
required

Bearer authentication header of the form Bearer <token>, where <token> is your auth token.

Body

application/json
site_url
string
required

The website: anthem.com, www.anthem.com or a pasted URL, kept as its HTTPS origin

Maximum string length: 2048
label
string

a string at most 200 character(s) long

Required string length: 1 - 200
username
string

a string at most 1024 character(s) long

Required string length: 1 - 1024
email
string

a string at most 320 character(s) long

Required string length: 3 - 320
phone
string

a string at most 64 character(s) long

Required string length: 3 - 64
account_number
string

a string at most 128 character(s) long

Required string length: 1 - 128
primary_identifier
enum<string>

The identifier it signs in with; else the first it holds in this order

Available options:
username,
email,
phone,
account_number
password
string

a string at most 16384 character(s) long

Required string length: 1 - 16384
sign_in
enum<string>

code: the site sends a code each sign-in, so no password is saved

Available options:
password,
code
date_of_birth
string

a string matching the pattern ^\d{4}-(?:0[1-9]|1[0-2])-(?:0[1-9]|[12]\d|3[01])$

Pattern: ^\d{4}-(?:0[1-9]|1[0-2])-(?:0[1-9]|[12]\d|3[01])$
zip
string

a string at most 10 character(s) long

Required string length: 3 - 10
authenticator_secret
string

a string at most 4096 character(s) long

Required string length: 1 - 4096
recovery_codes
string[]

an array of at most 20 item(s)

Required array length: 1 - 20 elements

a string at most 64 character(s) long

Required string length: 4 - 64
preferred_method
enum<string>

A two-factor method: sms, call, email, authenticator, push or recovery_code

Available options:
sms,
call,
email,
authenticator,
push,
recovery_code
deliver
enum<string>

Answer a Dashboard page where the person types the login instead, so no secret reaches this client

Available options:
dashboard

Response

With deliver dashboard: where to finish

dashboard_url
string
required

A signed-in Dashboard page where the person finishes this and sees the secret once