Skip to main content
POST

Authorizations

Authorization
string
header
required

User JWT access token issued by POST /api/auth/verify or POST /api/auth/social/verify. Routes that accept both auth modes declare api-key and bearer-jwt security schemes.

Headers

x-signature
string

HMAC-SHA256 signature: HMAC-SHA256(secretKey, timestamp + METHOD + path + body). Required for API-key authenticated requests (JWT/OAuth session auth is exempt).

x-timestamp
string

Request timestamp in epoch milliseconds. Required with x-signature for API-key auth. Rejected if drift exceeds 5 minutes.

Body

application/json
interests
enum<string>[]
required
Available options:
CARS_AND_RACING,
COMEDY,
COOKING_AND_FOOD,
CINEMA,
FANTASY,
MUSIC,
FASHION,
FITNESS,
CODING,
TECH,
SOCCER,
SPORT,
BASKETBALL,
GYM,
RUNNING,
SKATEBOARDING,
GAMING,
TRAVEL,
PHILOSOPHY,
HISTORY,
WELLNESS,
TV,
FILM,
SCIENCE,
ANIMALS

Response

200 - application/json

Updated user.

success
boolean
required
Example:

true

data
object
required

Endpoint-specific payload