Skip to main content
POST
Authorize User

Body

application/json
nonce
string
required

Example: b7d1c2e8f5a94f3db2f8c6a9d1e4

public_key
string
required

Ed25519 public key as hex (0x optional) or standard base64.

Example: 0xa9d81da788977638194c857b918f12ff2233c7a86e82b44705761b2d02426f6d

signature
string
required

Ed25519 signature as hex (0x optional) or standard base64. Canton Console: signs EKIDEN-CANTON-AUTHORIZE|{party_id}|{timestamp_ms}|{nonce}.

Example: 0xf5ec808e52d014f5193eccf680acf84c6256bdddb0159088e7cb18d74b9c590b92eb4381e10307fccc0868612993dfb9a542257aab22d7a3decfda33045fb905

timestamp_ms
integer<int64>
required

Example: 1731541800000

full_message
string | null

Optional Aptos Wallet Standard full message (APTOS-prefixed, newline-delimited). If provided, the backend will verify the signature against this exact string and also validate that it contains message: AUTHORIZE|{timestamp_ms}|{nonce} and a matching nonce:.

Example:

APTOS\nmessage: AUTHORIZE|1731541800000|b7d1c2e8f5a94f3db2f8c6a9d1e4\nnonce: b7d1c2e8f5a94f3db2f8c6a9d1e4

id_token
string | null

Optional Auth0/OIDC id_token (RS256) for hosted Canton party auth.

party_id
string | null

Optional Canton party id (<hint>::<fingerprint>) for Console (CIP-103) auth.

Response

200 - application/json

Successfully authorized and token generated

token
string
required
user_id
string<uuid>
required