EPIC-02 auth shell

Log back into the codex.

This shell posts to the API login and session endpoints that issue httpOnly cookies with a one-hour access window and a 30-day refresh window. The Secure flag stays on for HTTPS deployments and relaxes automatically for localhost development.

Log in

Your password authenticates the account and unwraps the notebook key inside this browser only.

Session checks

Use the shell to verify the active session and clear it cleanly.

If you forgot the password, use the emailed reset link and the recovery phrase on the password reset page. The phrase never leaves this browser.

Forgot password?

Use the same-origin proxy to inspect the current session or clear both cookies.

API target: /api/auth