Skip to main content
500CallsDocs
Browse the docs

csrf-failed

Dashboard requests only: API keys never get this problem type.

HTTP status
403
Refines
forbidden

When it happens

A dashboard request that changes something was sent without a valid X-CSRF-Token.

What to do

The dashboard fetches a new token and retries once by itself.

Example

Example 403 response
{  "type": "https://docs.messaging.500calls.com/errors/csrf-failed",  "title": "Forbidden",  "status": 403,  "code": "forbidden",  "detail": "Missing or invalid CSRF token.",  "request_id": "req_01M3KR6CQ26S90NG2V790GVFTX",  "errors": []}

How errors work