⚠️ This documentation is not complete and will change. Documentation and API References are actively being updated.
curl --request GET \
--url https://api.propops.app/api/security/csrf-token \
--header 'Authorization: Bearer <token>'{
"success": true,
"message": "Operation completed successfully",
"token": "abc123def456"
}Returns a fresh CSRF token for the current session.
Include this token in all state-mutating requests as csrf_token.
Required permission: Authenticated session (no specific permission required).
curl --request GET \
--url https://api.propops.app/api/security/csrf-token \
--header 'Authorization: Bearer <token>'{
"success": true,
"message": "Operation completed successfully",
"token": "abc123def456"
}All API requests must include a valid Bearer token in the Authorization header.
Tokens are 64-character SHA-256 session hashes issued by the PropOps authentication system.
Example:
Authorization: Bearer a1b2c3d4e5f6...