# OIDC callback endpoint **GET /auth/oidc/callback** Handles the identity provider callback. Validates the CSRF state, exchanges the authorization code for tokens via PKCE, finds or creates a user, and redirects to the UI with a one-time code. ## Servers - https://agentengine.mongodb.com: https://agentengine.mongodb.com () ## Authentication methods - Bearer auth ## Parameters ### Query parameters - **code** (string) Authorization code - **state** (string) CSRF state ## Responses ### 302 Redirect to UI with one-time code #### Body: application/json (string) string [Powered by Bump.sh](https://bump.sh)