Source: Roblox Creator Hub · CC BY 4.0 · View source · Code samples: MIT Imported 2026-10-03. Formatting adapted for this site.
POST /v2/passwords/reset/verify — openapi
Verifies a password reset challenge solution.
Endpoint
Method: POST
Path: /v2/passwords/reset/verify
Servers:
https://auth.roblox.com
Request Body
The request model containing the nonce and the solution. Roblox.Authentication.Api.Models.PasswordResetVerificationRequest
{
"content": {
"application/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.PasswordResetVerificationRequest"
}
},
"text/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.PasswordResetVerificationRequest"
}
}
},
"description": "The request model containing the nonce and the solution. Roblox.Authentication.Api.Models.PasswordResetVerificationRequest",
"required": true
} Responses
| Status | Description |
|---|---|
| 200 | OK |
| 400 | 3: Request was empty. 9: The target type is invalid. 14: The nonce is invalid. |
| 403 | 0: Token Validation Failed 13: The code is invalid. |
| 500 | 0: Unknown error occured. |
| 503 | 1: Feature temporarily disabled. Please try again later. |
{
"200": {
"description": "OK",
"content": {
"application/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.PasswordResetVerificationResponse"
}
},
"text/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.PasswordResetVerificationResponse"
}
}
}
},
"400": {
"description": "3: Request was empty.\r\n9: The target type is invalid.\r\n14: The nonce is invalid."
},
"403": {
"description": "0: Token Validation Failed\r\n13: The code is invalid."
},
"500": {
"description": "0: Unknown error occured."
},
"503": {
"description": "1: Feature temporarily disabled. Please try again later."
}
} Authentication
{
"security": [
{}
],
"securitySchemes": {
"roblox-api-key": {
"type": "apiKey",
"description": "A configurable key that allows granular access to Roblox resources. See https://create.roblox.com/docs/cloud/auth/api-keys for more information.",
"name": "x-api-key",
"in": "header"
},
"roblox-legacy-cookie": {
"type": "apiKey",
"description": "A browser cookie that represents the identity of a Roblox user. DO NOT SHARE THIS. Sharing this will allow someone to log in as you and to steal your Robux and items. We do not recommend using cookies to call endpoints. When possible, use API keys with the x-api-key header or OAuth 2.0 instead for authentication.",
"in": "cookie",
"name": ".ROBLOSECURITY"
},
"roblox-oauth2": {
"type": "oauth2",
"description": "Build or authorize apps to access Roblox resources. See https://create.roblox.com/docs/cloud/auth/oauth2-overview for more information.",
"flows": {
"authorizationCode": {
"authorizationUrl": "https://apis.roblox.com/oauth/v1/authorize",
"tokenUrl": "https://apis.roblox.com/oauth/v1/token",
"refreshUrl": "https://apis.roblox.com/oauth/v1/token",
"scopes": {}
}
}
}
}
} Related Schemas
Roblox.Authentication.Api.Models.PasswordResetVerificationRequest
Roblox.Authentication.Api.Models.PasswordResetVerificationResponse
Complete Operation Definition
{
"tags": [
"Accounts"
],
"summary": "Verifies a password reset challenge solution.",
"requestBody": {
"content": {
"application/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.PasswordResetVerificationRequest"
}
},
"text/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.PasswordResetVerificationRequest"
}
}
},
"description": "The request model containing the nonce and the solution. Roblox.Authentication.Api.Models.PasswordResetVerificationRequest",
"required": true
},
"responses": {
"200": {
"description": "OK",
"content": {
"application/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.PasswordResetVerificationResponse"
}
},
"text/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.PasswordResetVerificationResponse"
}
}
}
},
"400": {
"description": "3: Request was empty.\r\n9: The target type is invalid.\r\n14: The nonce is invalid."
},
"403": {
"description": "0: Token Validation Failed\r\n13: The code is invalid."
},
"500": {
"description": "0: Unknown error occured."
},
"503": {
"description": "1: Feature temporarily disabled. Please try again later."
}
},
"servers": [
{
"url": "https://auth.roblox.com"
}
],
"x-roblox-engine-usability": {
"apiKeyWithHttpService": false
},
"security": [
{}
],
"externalDocs": {
"url": "https://create.roblox.com/docs/cloud/reference/features/accounts#auth_post_v2_passwords_reset_verify"
}
}