Spend a reset link: set the same new password on every live account its address names
, and clear the lockout on each. One link, because one person forgetting one password is one event however many tenants have invited them.
Raises rather than returning an outcome, unlike api.sign_in — there is no counter here whose increment a rollback would undo, and the token’s own single-use consumption is the rate limit. No session is issued: choosing a password and proving you know it are two different claims.
Headers
Preference
params=single-object Body
Spend a reset link: set the same new password on every live account its address names, and clear the lockout on each. One link, because one person forgetting one password is one event however many tenants have invited them.
Raises rather than returning an outcome, unlike api.sign_in — there is no counter here whose increment a rollback would undo, and the token's own single-use consumption is the rate limit. No session is issued: choosing a password and proving you know it are two different claims.
Response
OK

