Authorization header. Tokens are obtained through a passwordless magic link flow.
Obtaining a token
Authentication is a three-step flow: 1. Request a magic linkintermediate_session_token along with a list of organizations the user belongs to.
3. Exchange for an org-scoped session
session.jwt. This is the token you’ll use for all subsequent requests.
Making authenticated requests
Pass the session JWT as a bearer token:401 Unauthorized response.
