ApiAuthGoogleCallback

Google OAuth callback

Handles the redirect back from Google. On success it: 1. Creates the identity + profile on first sign-in, or links to the existing identity. 2. Issues `peridot_access` and `peridot_refresh` cookies. 3. Redirects to the `CLIENT_SUCCESS_URL` configured on the server. Both cookies are `HttpOnly; SameSite=Lax`. In production the `Secure` flag is set. **Browser-navigation only.** Google redirects the browser here; do not call it directly via `fetch()`.

GET
/auth/google/callback

Handles the redirect back from Google. On success it:

  1. Creates the identity + profile on first sign-in, or links to the existing identity.
  2. Issues peridot_access and peridot_refresh cookies.
  3. Redirects to the CLIENT_SUCCESS_URL configured on the server.

Both cookies are HttpOnly; SameSite=Lax. In production the Secure flag is set.

Browser-navigation only. Google redirects the browser here; do not call it directly via fetch().

Response Body

application/json

curl -X GET "https://example.com/auth/google/callback"
Empty