Approve a pending device authorization

Delegates to Better Auth's /api/auth/device/approve. The realm/level guard registered by oidcGuardsPlugin enforces that the approving user's realm matches the target client's level — a cross-audience approval is rejected with 403.

POST/activate/approve

Authorization

better-auth.session_token<token>

Cookie session from Better Auth. Requires X-Org-Id header for org-scoped routes.

In: cookie

curl -X POST "https://your-instance/activate/approve"
Empty
"string"
"string"