The JSON service behind the dashboard. The dashboard itself is the web app on port 3000.
GET /health liveness probe
Everything under /api requires a bearer token:
POST /api/auth/send-otp {"email":"..."} emails a 6-digit code
POST /api/auth/verify-otp {"email":"...","otp":"123456"} returns the token
Authorization: Bearer <token>
Full endpoint reference: the /api-doc page on the dashboard host.