API reference

Native apps

Registration of SDK apps and device keys.

List native apps

GET/v1/native-apps

Scopes
apps:read

Parameters

FieldTypeRequired
cursorquerystringno
limitqueryintegerno

Responses

  • 200NativeAppList
  • 400
  • 401
  • 403
  • 404
  • 409
  • 412
  • 413
  • 415
  • 422
  • 428
  • 429
  • 503

Register a native app

POST/v1/native-apps

Scopes
apps:write
Required header
Idempotency-Key

Registers a native application of the tenant. One active registration per platform and app identifier.

Request bodyNativeAppCreate

FieldTypeRequired
platformenum: ios, androidyes
app_identifierstringyes
apple_team_idstringno
signing_certificate_sha256array of stringno
app_attest_environmentenum: production, developmentno
minimum_versionstringyes
revoked_versionsarray of stringyes
attestationenum: required, optionalyes

Responses

  • 201NativeApp
  • 400
  • 401
  • 403
  • 404
  • 409
  • 412
  • 413
  • 415
  • 422
  • 428
  • 429
  • 503

Update a native app

PATCH/v1/native-apps/{native_app_id}

Scopes
apps:write
Required header
Idempotency-Key
Required header
If-Match

Changes the allowed versions and the attestation requirement; applies to every later use of the app keys.

Parameters

FieldTypeRequired
native_app_idpathstring (uuid)yes

Request bodyNativeAppUpdate

FieldTypeRequired
minimum_versionstringyes
revoked_versionsarray of stringyes
attestationenum: required, optionalyes

Responses

  • 200NativeApp
  • 400
  • 401
  • 403
  • 404
  • 409
  • 412
  • 413
  • 415
  • 422
  • 428
  • 429
  • 503

Revoke a native app

POST/v1/native-apps/{native_app_id}/revoke

Scopes
apps:write
Required header
Idempotency-Key

Revokes the application: its keys are no longer accepted and new keys are not registered. Irreversible.

Parameters

FieldTypeRequired
native_app_idpathstring (uuid)yes

Responses

  • 200NativeApp
  • 400
  • 401
  • 403
  • 404
  • 409
  • 412
  • 413
  • 415
  • 422
  • 428
  • 429
  • 503

Revoke an app key

POST/v1/app-keys/{app_key_id}/revoke

Scopes
apps:write
Required header
Idempotency-Key

Revokes one app instance key (for example a compromised device): transcripts signed with it are no longer accepted.

Parameters

FieldTypeRequired
app_key_idpathstring (uuid)yes

Responses

  • 200AppKey
  • 400
  • 401
  • 403
  • 404
  • 409
  • 412
  • 413
  • 415
  • 422
  • 428
  • 429
  • 503