# Sign up authentication error

**URL:** <https://community.weweb.io/t/sign-up-authentication-error/6123>\
**Category:** Ask us anything\
**Tags:** authentication, xano\
**Created:** [December 27, 2023, 10:06pm UTC](https://community.weweb.io/t/sign-up-authentication-error/6123 "2023-12-27T22:06:35Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Ignixx](https://avatars.discourse-cdn.com/v4/letter/i/8e8cbc/32.png) [@Ignixx](https://community.weweb.io/u/Ignixx)\
**Post date:** [December 27, 2023, 10:06pm UTC](https://community.weweb.io/t/sign-up-authentication-error/6123/1 "2023-12-27T22:06:35Z")

</div>

Hey, I just started working with WeWeb + Xano. I’ve managed to create sample DB and test out login for sample account I’ve created directly in Xano DB. The login works well. I’ve stumbled on issue regarding sign up though. Each time I try to test out and create new account it gives me error. Any ideas?

````auto
name: "Error"
stack: "Error: Request failed with status code 400 at e.exports (https://editor-cdn.weweb.io/public/js/chunk-vendors.8e1719d9.js:1:120680) at e.exports (https://editor-cdn.weweb.io/public/js/chunk-vendors.8e1719d9.js:1:123139) at XMLHttpRequest.w (https://editor-cdn.weweb.io/public/js/chunk-vendors.8e1719d9.js:1:115226)"
message: "Request failed with status code 400"
isAxiosError: true
toJSON: function(){return{message:this.message,name:this.name,description:this.description,number:this.number,fileName:this.fileName,lineNumber:this.lineNumber,columnNumber:this.columnNumber,stack:this.stack,config:this.config,code:this.code,status:this.response&&this.response.status?this.response.status:null}}
config
adapter: function(e){return new Promise((function(t,n){var p,g=e.data,f=e.headers,m=e.responseType;function A(){e.cancelToken&&e.cancelToken.unsubscribe(p),e.signal&&e.signal.removeEventListener("abort",p)}i.isFormData(g)&&delete f["Content-Type"];var _=new XMLHttpRequest;if(e.auth){var v=e.auth.username||"",y=e.auth.password?unescape(encodeURIComponent(e.auth.password)):"";f.Authorization="Basic "+btoa(v+":"+y)}var b=a(e.baseURL,e.url);function w(){if(_){var i="getAllResponseHeaders"in _?l(_.getAllResponseHeaders()):null,s=m&&"text"!==m&&"json"!==m?_.response:_.responseText,o={data:s,status:_.status,statusText:_.statusText,headers:i,config:e,request:_};r((function(e){t(e),A()}),(function(e){n(e),A()}),o),_=null}}if(_.open(e.method.toUpperCase(),o(b,e.params,e.paramsSerializer),!0),_.timeout=e.timeout,"onloadend"in _?_.onloadend=w:_.onreadystatechange=function(){_&&4===_.readyState&&(0!==_.status||_.responseURL&&0===_.responseURL.indexOf("file:"))&&setTimeout(w)},_.onabort=function(){_&&(n(c("Request aborted",e,"ECONNABORTED",_)),_=null)},_.onerror=function(){n(c("Network Error",e,null,_)),_=null},_.ontimeout=function(){var t=e.timeout?"timeout of "+e.timeout+"ms exceeded":"timeout exceeded",i=e.transitional||d;e.timeoutErrorMessage&&(t=e.timeoutErrorMessage),n(c(t,e,i.clarifyTimeoutError?"ETIMEDOUT":"ECONNABORTED",_)),_=null},i.isStandardBrowserEnv()){var C=(e.withCredentials||u(b))&&e.xsrfCookieName?s.read(e.xsrfCookieName):void 0;C&&(f[e.xsrfHeaderName]=C)}"setRequestHeader"in _&&i.forEach(f,(function(e,t){"undefined"===typeof g&&"content-type"===t.toLowerCase()?delete f[t]:_.setRequestHeader(t,e)})),i.isUndefined(e.withCredentials)||(_.withCredentials=!!e.withCredentials),m&&"json"!==m&&(_.responseType=e.responseType),"function"===typeof e.onDownloadProgress&&_.addEventListener("progress",e.onDownloadProgress),"function"===typeof e.onUploadProgress&&_.upload&&_.upload.addEventListener("progress",e.onUploadProgress),(e.cancelToken||e.signal)&&(p=function(e){_&&(n(!e||e&&e.type?new h("canceled"):e),_.abort(),_=null)},e.cancelToken&&e.cancelToken.subscribe(p),e.signal&&(e.signal.aborted?p():e.signal.addEventListener("abort",p))),g||(g=null),_.send(g)}))}
timeout: 0
xsrfCookieName: "XSRF-TOKEN"
xsrfHeaderName: "X-XSRF-TOKEN"
maxContentLength: -1
maxBodyLength: -1
validateStatus: function(e){return e>=200&&e<300}
method: "post"
data: "{"name":"","email":"","password":""}"
url: "https://x8ki-letl-twmt.n7.xano.io/api:X2mbjAzW/auth/signup"
transitional
Object
transformRequest
Array(1)
transformResponse
Array(1)
headers
Object
request
Object
response
Object```
````

---

<div class="post-metadata">

**Author:** ![Joyce](https://sea2.discourse-cdn.com/flex016/user_avatar/community.weweb.io/joyce/32/13232_2.png) [@Joyce](https://community.weweb.io/u/Joyce)\
**Post date:** [December 29, 2023, 1:47am UTC](https://community.weweb.io/t/sign-up-authentication-error/6123/2 "2023-12-29T01:47:35Z")

</div>

Hi @Ignixx 👋

Are you using the basic authentication login and signup endpoints in Xano or did you make changes to one or both?

Can you show us how things are setup in WeWeb?

A few things you might want to check:

## 1- the Xano Auth plugin in WeWeb references the correct signup endpoint

 ![CleanShot 2023-12-29 at 02.41.13@2x](https://us1.discourse-cdn.com/flex016/uploads/weweb/original/2X/e/ed2898ebc3ac69f245ab485a3b74ff1e8a1a4e7a.png)

## 2- you’ve published the latest version of your signup endpoint in Xano

## 3- your Xano signup endpoint is the same as the one that’s available in the Xano Starter template

 ![CleanShot 2023-12-29 at 02.43.37@2x](https://us1.discourse-cdn.com/flex016/uploads/weweb/original/2X/f/f4a2fe661fb0d61d9b9c66b32848695238906fed.png)

## 4- you can signup new users when you run & debug the endpoint in Xano

 ![CleanShot 2023-12-29 at 02.46.01@2x](https://us1.discourse-cdn.com/flex016/uploads/weweb/original/2X/9/98fa01b860e9658a5b55c41c7a47001f8a77c9f9.png)

Does that help at all?

---

<div class="post-metadata">

**Author:** ![Ignixx](https://avatars.discourse-cdn.com/v4/letter/i/8e8cbc/32.png) [@Ignixx](https://community.weweb.io/u/Ignixx)\
**Post date:** [December 29, 2023, 7:50pm UTC](https://community.weweb.io/t/sign-up-authentication-error/6123/3 "2023-12-29T19:50:06Z")

</div>

Thank you for you reply. I’ve managed to find it. Turned out I was testing and haven’t met Xano password requirments - **minimum of eight (8) characters, maximum of 256 characters, at least one (1) alphabetic character, and at least one (1) numeric character**. Once i’ve tested properly it worked
