Authentication

Learn how to authenticate with the NOS API.

NOS uses session-based authentication backed by Redis. Sessions are established through GitHub OAuth and maintained via HTTP-only cookies.

Authenticating via GitHub OAuth

To authenticate, initiate the GitHub OAuth flow by navigating to the login endpoint. After authorizing with GitHub, NOS creates a session and sets an HTTP-only cookie in your browser.

API Session Cookies

All API requests must include a valid session cookie. The cookie is automatically set after a successful OAuth flow and is sent with each subsequent request from the browser.

Handling Expired Sessions

Sessions have a configurable expiration time. If your session expires, you will receive a 401 Unauthorized response. Re-authenticate by going through the OAuth flow again.