v1

latestOpenAPI 3.0.02026-07-26356764.0 KB
Challenge

Request EVM challenge

post/challenge/request/evm

Request body

domainstring hostname required

RFC 4501 dns authority that is requesting the signing.

statementstring

Human-readable ASCII assertion that the user will sign, and it must not contain .

uristring uri required

RFC 3986 URI referring to the resource that is the subject of the signing (as in the subject of a claim).

expirationTimestring date-time

ISO 8601 datetime string that, if present, indicates when the signed authentication message is no longer valid.

notBeforestring date-time

ISO 8601 datetime string that, if present, indicates when the signed authentication message will become valid.

resourcesstring[]

List of information or references to information the user wishes to have resolved as part of authentication by the relying party. They are expressed as RFC 3986 URIs separated by new lines.

timeoutnumber required

Time in seconds before the challenge is expired

chainId'1' | '5' | '10' | '25' | '56' | '97' | '100' | '137' | '250' | '338' | '420' | '1284' | '1285' | '1337' | '8453' | '43113' | '43114' | '80001' | '80002' | '84531' | '88888' | '11155111' required

EIP-155 Chain ID to which the session is bound, and the network where Contract Accounts must be resolved.

addressstring required

Ethereum address performing the signing conformant to capitalization encoded checksum specified in EIP-55 where applicable.

Example request

{
  "domain": "defi.finance",
  "statement": "Please confirm",
  "uri": "https://defi.finance/",
  "expirationTime": "2020-01-01T00:00:00.000Z",
  "notBefore": "2020-01-01T00:00:00.000Z",
  "resources": [
    "https://docs.moralis.io/"
  ],
  "timeout": 15,
  "address": "0xAb5801a7D398351b8bE11C439e05C5B3259aeC9B"
}

Response

The back channel challenge containing the id to store on the api and the message to be signed by the user

idstring required

17-characters Alphanumeric string Secret Challenge ID used to identify this particular request. Is should be used at the backend of the calling service to identify the completed request.

profileIdstring required

Unique identifier with a length of 66 characters

messagestring required

Message that needs to be signed by the end user

Example response

{
  "id": "fRyt67D3eRss3RrXa",
  "profileId": "0xbfbcfab169c67072ff418133124480fea02175f1402aaa497daa4fd09026b0e1",
  "message": "defi.finance wants you to sign in with your Ethereum account:\n0xAb5801a7D398351b8bE11C439e05C5B3259aeC9B\n\nPlease confirm\n\nURI: https://defi.finance/\nVersion: 1\nChain ID: 1\nNonce: DbU1DCTmdzR4lg3wi\nIssued At: 2022-06-12T12:15:31.290Z\nExpiration Time: 2020-01-01T00:00:00.000Z\nNot Before: 2020-01-01T00:00:00.000Z\nResources:\n- https://docs.moralis.io/"
}