Authentication
Learn how to authenticate with the NOS API.
NOS uses session-based authentication backed by Redis. Sessions are established through GitHub OAuth and maintained via HTTP-only cookies.
Authenticating via GitHub OAuth
To authenticate, initiate the GitHub OAuth flow by navigating to the login endpoint. After authorizing with GitHub, NOS creates a session and sets an HTTP-only cookie in your browser.
API Session Cookies
All API requests must include a valid session cookie. The cookie is automatically set after a successful OAuth flow and is sent with each subsequent request from the browser.
Handling Expired Sessions
Sessions have a configurable expiration time. If your session expires, you will receive a 401 Unauthorized response. Re-authenticate by going through the OAuth flow again.