Used during authentication to lookup customer data based on email address. Customers will be authenticated via OTP before data sharing is authorised.
The Fiskil Data Provider will include a self-signed JWT as a Bearer token in the Authorization header.
You should verify this JWT using the JWKS URL you can find for your Data Provider instance in the Fiskil
Console. To verify the JWT you must:
exp claimsub and iss claims are your data provider subdomainaud claim is the URI of the resource being requested (excluding any query parameters)jti value is unique
For further detail on security and authentication refer to our Authentication documentationemail of customer
The email address of the end-user trying to authenticate. The API should return any customers that this end-user is associated with. The user may be the owner of the customer or just an authorized contact. For example, the same email may be associated with an individual customer and a business customer. Both customers should be returned.
Success