Finish provider authorization
GET
Completes Google or GitHub sign-in and redirects to the Layerbeat console.
Access: Provider redirect with the original browser cookies and valid state.
- The provider calls this URL after authorization. It cannot be used as an API-key login.
- Failed or expired flows redirect with a public error code. Return destinations are fixed by Layerbeat.
provider*stringThe fixed supported identity provider.
Value in
"google""github"state?stringRandom state from the authorization request; validated with the bound cookie.
code?stringOne-time provider authorization code. Never logged or stored.
error?stringProvider cancellation/error indicator. Provider descriptions are ignored.
A fixed same-origin console redirect, with protected session cookies only on successful sign-in. Failure is represented by an allowlisted social_error fragment parameter.
response?stringtext/htmlcurl -X GET 'https://layerbeat.com/v1/auth/social/google/callback?state=example-state&code=provider-code&error=access_denied'"<a href=\"https://layerbeat.com/console/#/overview?social=success\">Found</a>."