v1

latestOpenAPI 3.0.0Creative Commons Attribution 3.02026-07-13274687.3 KB
projects

Validates a custom token signed using your project's Admin SDK service account credentials. If valid, returns an AppCheckToken.

post/v1/{+app}:exchangeCustomToken

Path parameters

appstring required

Required. The relative resource name of the app, in the format: projects/{project_number}/apps/{app_id} If necessary, the project_number element can be replaced with the project ID of the Firebase project. Learn more about using project identifiers in Google's AIP 2510 standard.

Request body

customTokenstring

Required. A custom token signed using your project's Admin SDK service account credentials.

limitedUseboolean

Specifies whether this attestation is for use in a limited use (true) or session based (false) context. To enable this attestation to be used with the replay protection feature, set this to true. The default value is false.

Response

Successful response