Claim initial Administrator access for the current human account
POST/api/v1/setup/claim
Requires an unclaimed installation, an ordinary same-origin cookie session for an active USER principal, and proof of the protected owner recovery credential. The transaction permanently closes setup claiming, binds the built-in Administrator role, and appends a safe audit event. The recovery Owner remains separate.
Request
Responses
- 200
- 400
- 401
- 403
- 409
- 503
Setup claimed and current capabilities refreshed
The multipart shape or Idempotency-Key is malformed
The opaque credential is absent, ambiguous, malformed, expired, revoked, or invalid
The browser mutation did not originate from this application, or the authenticated member lacks the required permission
Duplicate content is disallowed, or an idempotency key was reused for a different request
A required core dependency is unavailable; retry with bounded backoff