{"service":"adhivakta-auth-worker","description":"Hand-rolled auth (Web Crypto + KV + D1): email+password, mandatory email-OTP, OAuth2 Google (PKCE), revocable sessions, Brevo email.","endpoints":{"GET /health":"liveness probe","POST /v1/auth/signup":"email+password signup (sends signup OTP)","POST /v1/auth/login":"email+password login (sends login OTP)","POST /v1/auth/verify-otp":"verify OTP -> session (login/signup) or reset token (password_reset)","POST /v1/auth/resend-otp":"resend a throttled OTP","POST /v1/auth/forgot-password":"request a password-reset OTP","POST /v1/auth/reset-password":"reset password with a reset token","POST /v1/auth/logout":"revoke the current session","GET /v1/auth/session":"current AuthContext (requires session cookie)","GET /v1/auth/oauth/google/start":"begin Google OAuth (Auth-Code + PKCE)","GET /v1/auth/oauth/google/callback":"Google OAuth callback (then mandatory OTP, §15 Q5)"},"oauth":{"google":"disabled (no client credentials)"},"email":"enabled"}