# Validate OTP

Check a six-digit code against the latest code issued to `email` on the `device_id` session and authenticate that session, returning the member JWT. A code locks after 5 incorrect attempts.

## Request[​](#request "Direct link to request")

## Responses[​](#responses "Direct link to Responses")

* 200
* 401
* 422

Unauthenticated

Validation error
