Look up a status, pick the right one for an API, or hit a live endpoint that actually returns it. Add ?code=418 to this URL and the response is that status — useful for curl, interceptors, and “what does my client do on 503?” Nothing here phones home except the Try it fetch to this same page.
Which class?
The client is not authenticated. Send WWW-Authenticate. The name is historical — it means “unauthenticated.”
When to use
Missing, expired, or invalid credentials. Logging in might fix it.
Don’t
If they are signed in but lack permission, that is 403. Do not use 401 to hide existence of a resource if that leaks auth state you care about — some APIs use 404 instead.
Live URL
curl -i https://corecoding.com/utilities/http-status.php?code=401
No codes match.
Code use cases