Consume an approved identity verification
Authentication
Bearer authentication of the form Bearer <token>, where token is your auth token.
Path parameters
Headers
Optional client-generated idempotency token (recommended for safe retries).
Unix seconds. Required on the signed host; tolerance is 300s either way (403 request_timestamp_skew).
Lowercase hex SHA-256 of the body. An empty body hashes the empty string, so the header is always present. Mismatch returns 400 body_hash_mismatch.
Detached JWS (<protected>..<signature>, ES256 or PS256) over METHOD\nPATH?QUERY\nTIMESTAMP\nIDEMPOTENCY_KEY_OR_EMPTY\nX_CONTENT_SHA256.
Request
Must exactly equal the referenceId supplied at creation.
Response
Caller-owned journey identifier supplied at creation.
Present only while status is PENDING.
Provider-normalized reason when the journey failed or expired; otherwise null or omitted.
Terminal transition time for APPROVED, FAILED or EXPIRED.
Last instant at which an approved result may be consumed. Set for APPROVED.
First successful consume time; null or omitted until consumption.