> ## Documentation Index
> Fetch the complete documentation index at: https://docs.qa.esectra.com/llms.txt
> Use this file to discover all available pages before exploring further.

# `POST /v1/control/team/{id}/mfa-reset`: clears somebody's second factor.

> The path back in for a person who has lost both their phone and their
recovery codes. It is deliberately an admin action rather than a
self-service one: a self-service reset is a way around the second factor.
# Errors

Returns `401` without a session, `403` without `TeamManage`, `404` when the
reviewer is not in the caller's tenant, and `503` when the enrolment or
session store cannot be written.



## OpenAPI

````yaml /openapi.json post /v1/control/team/{reviewer_id}/mfa-reset
openapi: 3.1.0
info:
  title: Esectra API
  description: >-
    Transaction screening, identity verification, and wallet risk.


    Every create route accepts `Idempotency-Key`; replaying one returns the
    original record with `200` where the first call returned `201`. `POST
    /v1/transactions` requires the header, because a duplicated transaction is a
    duplicated financial record.
  license:
    name: proprietary
    identifier: proprietary
  version: 0.1.0
servers:
  - url: https://qa.esectra.com
    description: Esectra QA Documentation
security: []
paths:
  /v1/control/team/{reviewer_id}/mfa-reset:
    post:
      tags:
        - Control
      summary: '`POST /v1/control/team/{id}/mfa-reset`: clears somebody''s second factor.'
      description: >-
        The path back in for a person who has lost both their phone and their

        recovery codes. It is deliberately an admin action rather than a

        self-service one: a self-service reset is a way around the second
        factor.

        # Errors


        Returns `401` without a session, `403` without `TeamManage`, `404` when
        the

        reviewer is not in the caller's tenant, and `503` when the enrolment or

        session store cannot be written.
      operationId: reset_mfa_handler
      parameters:
        - name: reviewer_id
          in: path
          description: Reviewer identifier
          required: true
          schema:
            type: string
      responses:
        '204':
          description: Second factor cleared
        '401':
          description: No usable credentials
        '403':
          description: Requires TEAM_MANAGE
        '404':
          description: No such reviewer in this tenant
        '503':
          description: A backing store could not be reached
      security:
        - session_cookie: []
components:
  securitySchemes:
    session_cookie:
      type: apiKey
      in: cookie
      name: esectra_session
      description: >-
        A signed-in reviewer's session. httpOnly and SameSite=Lax; set by `POST
        /v1/control/sessions` and only usable once the second factor is met.

````