Trusted Palm ID / identity servicesProof, capture, bind:
Proof, capture, bind:
one contextual session.
A reference profile for integrators. New fields and states must be reconciled with the actual API contract; this website does not publish RAR/C06 endpoints.
Reference sequence.
01 / Application
Select tenant and purpose
02 / Identity source
Verify through authorized eID / SSO / ShareInfo
03 / Session service
Bind proofingRef, device and expiry
04 / Enrollment point
Check participant continuity and capture the palm
05 / Core / engine
Quality, PAD, reference protection and duplicate checks
06 / Binding service
Activate only when eligible; record evidence
Reference data fields.
| Proposed field | Meaning |
|---|---|
requestId / correlationId | Trace requests without personal-data payloads |
tenantRef / purpose | Organization and purpose boundary |
proofingRef | Reference to source-identity evidence |
enrollmentSessionRef | Expiring participant/device-bound session |
subjectRef / biometricRef / bindingRef | Three references with separate roles |
deviceRef / biometricProfileRef | Endpoint and configuration context |
identityResult / authorizationDecision / nextAction | Separate identity result, authorization and next action |
evidenceRef | Access-controlled evidence reference |
Business exceptions need safe handling.
| Exception | Handling |
|---|---|
| Source unavailable | Do not activate a binding; retry or use authorized review. |
| Participant mismatch | Stop and re-proof; do not silently replace subjectRef. |
| Expiry / replay | Reject the stale session; do not reuse the payload. |
| Possible duplicate | Review within tenant/purpose; no auto-merge. |
| Duplicate / out-of-order webhook | Check authenticity, event version and idempotency. |
Air-gap constraints.
Agree the contract before connecting.
The simulator does not provide a production endpoint or access.