Client area

Error · 403

origin_not_allowed

Requests from this origin are not accepted

What happened

The browser Origin is not on this token’s allowlist.

What to do

Add the origin in the client area, or call from a non-browser client.

The response body carries a recovery object with the same guidance in machine-readable form: recovery.action names the call to make next, and recovery.hint is one sentence a model can act on. Not every code carries one — a 401, for instance, has nothing to recover to but a valid token.

Back to the full error reference

Esc
navigate open Esc close