Error codes

signed_requests_required

Signed requests required

HTTP 401

At launchSent from launch, once the partner security platform enforces.

Your institution accepts signed requests only, so a call made with an API key (Authorization: Bearer ...) is refused, whatever the key may do. Sign the request with a signed credential (signedRequest) instead. Ask SecondAppraisal to accept API keys again if you need them.

The problem body

Sent as application/problem+json, with the request id in request_id and the X-Request-Id header. Branch on code: the error and detail sentences can change, and some operations add members of their own.

Example problem
{
  "error": "Signed requests required",
  "code": "signed_requests_required",
  "type": "https://secondappraisal.com/developers/errors/signed_requests_required",
  "title": "Signed requests required",
  "status": 401,
  "detail": "Signed requests required",
  "instance": "/api/gap/v1/referrals",
  "request_id": "req_4f9a2c7e1b8d4a6f9c3e2b1a7d5f8e0c"
}

Operations that can send it