Source: Roblox Creator Hub · CC BY 4.0 · View source · Code samples: MIT Imported 2026-10-03. Formatting adapted for this site.
POST /v3/users/{userId}/two-step-verification/login — openapi
Authenticates as a user given a two step verification verification token.
Endpoint
Method: POST
Path: /v3/users/{userId}/two-step-verification/login
Servers:
https://auth.roblox.com
Parameters
| Name | Location | Required | Description |
|---|---|---|---|
| userId | path | true | The user ID to authenticate as. |
[
{
"in": "path",
"name": "userId",
"description": "The user ID to authenticate as.",
"required": true,
"schema": {
"type": "integer",
"format": "int64"
}
}
] Request Body
The Roblox.Authentication.Api.TwoStepVerificationLoginRequest.
{
"content": {
"application/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.TwoStepVerificationLoginRequest"
}
},
"text/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.TwoStepVerificationLoginRequest"
}
}
},
"description": "The Roblox.Authentication.Api.TwoStepVerificationLoginRequest.",
"required": true
} Responses
| Status | Description |
|---|---|
| 200 | OK |
| 400 | 1: User is invalid. 5: Invalid two step verification ticket. 10: Invalid verification token. |
| 403 | 0: Token Validation Failed 11: Maxium logged in accounts limit reached. 44: Login is unavailable in your country. |
{
"200": {
"description": "OK",
"content": {
"application/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.TwoStepVerificationV3LoginResponse"
}
},
"text/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.TwoStepVerificationV3LoginResponse"
}
}
}
},
"400": {
"description": "1: User is invalid.\r\n5: Invalid two step verification ticket.\r\n10: Invalid verification token."
},
"403": {
"description": "0: Token Validation Failed\r\n11: Maxium logged in accounts limit reached.\r\n44: Login is unavailable in your country."
}
} Authentication
{
"security": [
{}
],
"securitySchemes": {
"roblox-api-key": {
"type": "apiKey",
"description": "A configurable key that allows granular access to Roblox resources. See https://create.roblox.com/docs/cloud/auth/api-keys for more information.",
"name": "x-api-key",
"in": "header"
},
"roblox-legacy-cookie": {
"type": "apiKey",
"description": "A browser cookie that represents the identity of a Roblox user. DO NOT SHARE THIS. Sharing this will allow someone to log in as you and to steal your Robux and items. We do not recommend using cookies to call endpoints. When possible, use API keys with the x-api-key header or OAuth 2.0 instead for authentication.",
"in": "cookie",
"name": ".ROBLOSECURITY"
},
"roblox-oauth2": {
"type": "oauth2",
"description": "Build or authorize apps to access Roblox resources. See https://create.roblox.com/docs/cloud/auth/oauth2-overview for more information.",
"flows": {
"authorizationCode": {
"authorizationUrl": "https://apis.roblox.com/oauth/v1/authorize",
"tokenUrl": "https://apis.roblox.com/oauth/v1/token",
"refreshUrl": "https://apis.roblox.com/oauth/v1/token",
"scopes": {}
}
}
}
}
} Related Schemas
Complete Operation Definition
{
"tags": [
"Accounts"
],
"summary": "Authenticates as a user given a two step verification verification token.",
"parameters": [
{
"in": "path",
"name": "userId",
"description": "The user ID to authenticate as.",
"required": true,
"schema": {
"type": "integer",
"format": "int64"
}
}
],
"requestBody": {
"content": {
"application/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.TwoStepVerificationLoginRequest"
}
},
"text/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.TwoStepVerificationLoginRequest"
}
}
},
"description": "The Roblox.Authentication.Api.TwoStepVerificationLoginRequest.",
"required": true
},
"responses": {
"200": {
"description": "OK",
"content": {
"application/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.TwoStepVerificationV3LoginResponse"
}
},
"text/json": {
"schema": {
"$ref": "#/components/schemas/Roblox.Authentication.Api.Models.TwoStepVerificationV3LoginResponse"
}
}
}
},
"400": {
"description": "1: User is invalid.\r\n5: Invalid two step verification ticket.\r\n10: Invalid verification token."
},
"403": {
"description": "0: Token Validation Failed\r\n11: Maxium logged in accounts limit reached.\r\n44: Login is unavailable in your country."
}
},
"servers": [
{
"url": "https://auth.roblox.com"
}
],
"x-roblox-engine-usability": {
"apiKeyWithHttpService": false
},
"security": [
{}
],
"externalDocs": {
"url": "https://create.roblox.com/docs/cloud/reference/features/accounts#auth_post_v3_users__userId__two_step_verification_login"
}
}