Change Wallet PIN
An optional phone field can target another user’s PIN by phone (support/admin path) - omit it to change your own PIN.
Headers
Authorization
X-Device-Id
Required on non-GET requests to non-public paths (DeviceSignatureFilter), skipped for GET/whitelisted/multipart requests and in the local profile.
X-Signature
Base64 ECDSA signature over sha256(body) + timestamp + requestId, signed with the device's registered private key.
X-Timestamp
Unix epoch seconds; must be within 5 minutes of server time.
X-Request-Id
Unique per request - reused values are rejected as replays.
Request
This endpoint expects an object.
currentPin
newPin
confirmNewPin
Response
200 OK
code
message
data
Errors
400
Bad Request Error
