Skip to main content

Initiate delegated identity verification from an external integration

External-integration twin of PostHelpdeskVerifyDelegateInitiate. The operator verifies a subject who has no device by exchanging codes with an approved delegate. Rides the same handshake infrastructure, so status, code submission and cancellation reuse the external helpdesk-verify {session_id} endpoints.

A 404 means the delegate has no active sensor — the same meaning the non-delegated external initiate carries, so the integration can offer a fallback rather than treating it as a dead end.

Header Parameters
  • SlashID-OrgID string required

    The organization ID

    Example: af5fbd30-7ce7-4548-8b30-4cd59cb2aba1
Request Body required
  • subject_email email required

    The user being verified, who has no device available.

  • delegate_email email required

    The delegate who exchanges codes on the subject's behalf. Validated server-side against delegation_mode, and required to have an active sensor on the connection — a delegate without one yields 404, exactly as the non-delegated external initiate does.

  • delegation_mode string required

    Possible values: [global_approved, line_manager, unconstrained]

    How a delegate is selected for delegated verification. global_approved — pick from the org's approved delegate list. line_manager — the subject's line manager, resolved via the HRIS graph. unconstrained — any user eligible for the chosen verification method.

  • connection_id string required

    The external identity connection ID

  • operator object required
  • email email required

    The human operating the integration (e.g. the ServiceNow agent). MUST be derived server-side by the integration (ServiceNow: gs.getUser().getEmail()), never supplied by its own client. Resolved to a SlashID console person holding a verifier role; 403 if it does not resolve or lacks the role.

  • assertion string required

    Possible values: [integration_asserted, idp_verified]

    How the operator identity was established. integration_asserted — the calling integration vouches for it under its own API credential; idp_verified — proven to SlashID directly. Recorded on every attempt so that a later move to per-agent authentication does not change what historical audit rows meant. Only integration_asserted is accepted today.

  • external_metadata object
  • source string required

    Possible values: [servicenow]

  • instance string

    ServiceNow instance name.

  • table string
  • record_id string

    sys_id of the Call or Incident. Frequently absent — verification commonly starts at call intake, on a record that has not been saved yet and therefore has no sys_id.

  • display_id string

    Human-facing record number, e.g. INC0012345.

Responses

Delegated verification initiated successfully


Schema
  • meta object
  • pagination object
  • limit integer
  • offset integer
  • total_count int64
  • cursor_pagination object

    Cursors are opaque. Follow the tokens the server returns; never construct, parse or modify one.

  • limit integer
  • next_cursor string

    Opaque token addressing the next page. Absent on the last page.

  • prev_cursor string

    Opaque token addressing the previous page. Absent on the first page.

  • last_cursor string

    Opaque token addressing the final page directly, so a client can jump to the end without a total count.

  • total_count int64

    Total number of matching items. Returned on the FIRST page only; clients cache it for the remainder of the walk.

  • errors object[]
  • httpcode integer
  • message string
  • result object
  • session_id string

    Unique delegated verification session identifier

  • verification_code string

    Possible values: Value must match regular expression ^\d{6}$

    The 6-digit code the operator reads to the delegate over voice

  • subject_email string

    The user being verified on whose behalf the delegation runs

  • delegate_email string

    The delegate exchanging codes with the operator

  • delegation_mode string

    Possible values: [global_approved, line_manager, unconstrained]

    How a delegate is selected for delegated verification. global_approved — pick from the org's approved delegate list. line_manager — the subject's line manager, resolved via the HRIS graph. unconstrained — any user eligible for the chosen verification method.

  • expires_at date-time

    When this verification session expires

  • turn_order string

    Possible values: [sensor_first, admin_first]

    Which party proves their identity first, resolved from the connection's settings. sensor_first — the delegate reads their code first; admin_first — the operator reads verification_code aloud first.