# `capability_missing`

A Multiplayer API error, sent with HTTP 403. Status: the Multiplayer API is in private alpha; this code is part of its published contract.

## When

The player token does not grant what this route needs (its `can` list).

## What to do

Mint the token with the capability the route needs, or call the route from your backend with the secret key.

## The answer

Every error is a JSON body with a stable `error` code. Clients act on the codes they know and treat any other code as a failure of its HTTP status, and keep fields they do not know.

```json
{
  "error": "capability_missing",
  "detail": "A sentence that is safe to show.",
  "next": "Mint the token with the capability the route needs, or call the route from your backend with the secret key.",
  "docsUrl": "https://lobbylab.gg/docs/errors/capability_missing"
}
```

See also: [every error code](/docs/errors), [the API reference](/docs/api) and [the docs](/docs).
