---
title: "Session"
description: "one open sign-in of a user through a client"
section: concepts
address: /concepts/session
contract: 0476e35e6e275db5
---

# Session

one open sign-in of a user through a client

[figure: Session is a work at user scope. The drawing shows its fields and the objects that they point at.]

| property | value |
|---|---|
| kind | work |
| scope | user |
| key | the user, the client and when it began |
| store | postgres |
| family | people |



## Fields


| field | type | required | note |
|---|---|---|---|
| `user` | `id` | yes |  |
| `client` | `id` | yes |  |
| `began_at` | `time` | yes |  |
| `strength` | `one of password \| passkey \| second factor` | yes |  |
| `ends_at` | `time` | yes |  |
| `ended_by` | [Caller](/concepts/caller) | no |  |



## Routes that use it
No route takes or returns Session directly. The record holds it, and the objects that point at it reach it.
