UserInfo Endpoint
POST/v3/service/extension/oidc/:organisationId/userinfo
OpenID Connect UserInfo endpoint that returns claims about the authenticated end-user. Requires a valid access token obtained from the token endpoint to be provided in the Authorization header. The endpoint accepts GET and POST. Error answers of the provider have an empty body, and the WWW-Authenticate header holds the reason.
Request
Path Parameters
The ID of the organisation
Responses
- 200
- 400
- 401
- 403
- 404
- 500
User information
Response Headers
- application/json
- Schema
- Example (from schema)
Schema
Unique identifier for the user, resolved with the identity matching attributes or the callback of the client
presentation object
The presented credentials. This is an object, not an array. Each key is the index of a presentation as a string, starting at "0". Each value holds the claims of that presentation, and its content depends on the credential format.
property name* object
{
"sub": "[email protected]",
"presentation": {
"0": {
"vct": "urn:eudi:pid:1",
"email": "[email protected]"
}
}
}
Bad request. The provider answers with an empty body and the WWW-Authenticate header when a request parameter occurs more than once. The answer has errorCode and errorDescription when the organisation is not found.
Response Headers
WWW-Authenticate string
The Bearer challenge. It holds
erroranderror_descriptionwhen the provider gives a reason.
- application/json
- Schema
- Example (from schema)
Schema
{
"errorCode": 400,
"errorDescription": "Bad input parameter"
}
Unauthorized. The access token is missing, not valid or expired. The body is empty.
Response Headers
WWW-Authenticate string
The Bearer challenge. It holds
erroranderror_descriptionwhen the provider gives a reason.
Forbidden. The access token does not have the scope openid. The body is empty.
Response Headers
WWW-Authenticate string
The Bearer challenge. It holds
erroranderror_descriptionwhen the provider gives a reason.
Not found. The Passwordless Login extension has never been enabled for the organisation.
Response Headers
- application/json
- Schema
- Example (from schema)
- Example
Schema
The error code, for example invalid_request, not_found or server_error
The reason for the error
{
"error": "string",
"error_description": "string"
}
{
"error": "not_found",
"error_description": "Not found"
}
Internal server error. The answer has errorCode and errorDescription when it cannot reach the provider.
Response Headers
- application/json
- Schema
- Example (from schema)
Schema
- Provider error
- API error
The error code, for example invalid_request, not_found or server_error
The reason for the error
{
"error": "server_error",
"error_description": "Internal server error"
}