---
title: "Verifies a two step verification challenge with a password (code)."
method: POST
path: "/v1/users/{userId}/challenges/password/verify"
tags: ["Accounts"]
---

# Verifies a two step verification challenge with a password (code).

`POST /v1/users/{userId}/challenges/password/verify`

## Path parameters

- `userId` integer, required

## Request body

- RobloxTwoStepVerificationApiVerifyCodeRequest — Request parameters for verifying a two step verification code.
  - `challengeId` string — The two step verification challenge ID.
  - `actionType` 0 | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 — The Roblox.TwoStepVerification.Client.TwoStepVerificationActionType associated with the challenge. ['Unknown' = 0, 'Login' = 1, 'RobuxSpend' = 2, 'ItemTrade' = 3, 'Resale' = 4, 'PasswordReset' = 5, 'RevertAccount' = 6, 'Generic' = 7, 'GenericWithRecoveryCodes' = 8]
  - `code` string — The two step verification code.

## Response `200`

OK

- RobloxTwoStepVerificationApiVerifyCodeResponse — Result for a successful verification.
  - `verificationToken` string — The verification token.

## Other responses

- `400` — 1: Invalid challenge ID. 4: The password is invalid.
- `403` — 0: Token Validation Failed 2: The user ID is invalid.
- `429` — 5: Too many requests.
- `503` — 7: Two step verification is currently under maintenance.

---

[API](https://skmtc.net/roblox/apis/roblox-api.md) · [All operations](https://skmtc.net/roblox/apis/roblox-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/roblox/roblox-api/versions/756260310407/schema)
