Skip to content
Request
Response

安全验证

安全验证接口用于增强账户安全。

接口地址

POST https://ai-tokenhub.com/v1/security/verify
POST https://ai-tokenhub.com/v1/security/send-code
GET https://ai-tokenhub.com/v1/security/status

发送验证码

bash
curl -X POST https://ai-tokenhub.com/v1/security/send-code \
  -H "Authorization: Bearer YOUR_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{
    "type": "email",
    "recipient": "user@example.com"
  }'

验证验证码

bash
curl -X POST https://ai-tokenhub.com/v1/security/verify \
  -H "Authorization: Bearer YOUR_API_KEY" \
  -H "Content-Type: application/json" \
  -d '{
    "type": "email",
    "code": "123456"
  }'

响应示例

json
{
  "success": true,
  "verified": true,
  "expires_at": "2024-01-01T12:30:00Z"
}

验证类型

类型说明
email邮箱验证码
sms短信验证码
totpTOTP 动态口令

安全状态查询

bash
curl https://ai-tokenhub.com/v1/security/status \
  -H "Authorization: Bearer YOUR_API_KEY"

响应示例

json
{
  "email_verified": true,
  "phone_verified": false,
  "two_factor_enabled": true,
  "two_factor_method": "totp",
  "login_alerts_enabled": true,
  "trusted_devices": [
    {
      "id": "device_xxx",
      "name": "iPhone 15",
      "last_used": "2024-01-01T12:00:00Z"
    }
  ]
}

安全建议

  1. 启用两步验证:强烈建议启用 TOTP 两步验证
  2. 定期修改密码:建议每 90 天更换一次密码
  3. 设置登录警报:开启登录提醒功能
  4. 管理可信设备:定期检查和清理可信设备列表
  5. 注意钓鱼风险:不要在不确认的网站输入账户信息