ChatDiagram
Authentication · API · Security

Password Reset OTP API Flow

סוג תרשים זרימהתקן Sugiyama layered DAG + orthogonal routingמנוע schematex-flowchartעודכן 29.9.2026
Password Reset OTP API Flow
Drawing preview
התרחיש

A Laravel API handles password reset by issuing a one-time password (OTP) via Twilio Verify and storing hashed OTPs in MySQL. The flow includes both request and verify endpoints.

מה מופיע בתרשים הזה

פענחו את ההחלטות שמאחוריו.

01

Return generic success for unknown email to prevent user enumeration

02

Store only hashed OTP with expiry in MySQL

03

Use Twilio Verify result to gate 200 versus 502 response

04

Invalid or expired OTP returns 401; successful verify issues a reset token

Reusable for any API that implements OTP-based password reset with external SMS provider and relational database.

עיון בכל תבניות ה־תרשים זרימה ←