Skip to content
Median
Esc
↑↓navigate↵open⌘Jpreview

Get how visitors sign in

The sign-in method and its settings. The OIDC client secret is never returned.

GET/site/sign-in
Authorization
AuthorizationBearer token · headerrequired
`MEDIAN_KEY` from Settings under API, or an MCP OAuth access token. A key acts as the organization; a token acts as the person who approved it.
Responses
200The sign-in settings.
methodstring
median: Median accounts. app: a route in your app. oidc: an OpenID Connect provider.
Allowed:medianappoidc
appUrlstring | null
The sign-in route in your app, for app.
oidcobject | null
Show properties
issuerstring
clientIdstring
secretHintstring
The client secret's last four characters.
oidcRedirectUristring
The redirect URI to register at your OpenID provider.
problemobject | null
Why your OpenID provider refused the last sign-in. Cleared when a sign-in works or the settings are saved.
Show properties
atnumber
When it happened, in milliseconds since the epoch.
codestring
The provider's error code, like invalid_scope.
messagestring
What to change.
detailstring | null
The provider's own words.
401The bearer token is missing, revoked, or expired.
errorobject
Show properties
codestring
messagestring
429Too many requests. Wait the seconds in `Retry-After`. Limits depend on the plan. See [rate limits](/api/errors-and-limits#rate-limits).
errorobject
Show properties
codestring
messagestring
Request
curl -X GET "https://api.median.sh/v1/site/sign-in" \
  -H "Authorization: Bearer YOUR_TOKEN"
Response
{
  "method": "median",
  "appUrl": "string",
  "oidc": {
    "issuer": "string",
    "clientId": "string",
    "secretHint": "string"
  },
  "oidcRedirectUri": "string",
  "problem": {
    "at": 0,
    "code": "string",
    "message": "string",
    "detail": "string"
  }
}