v1
latestOpenAPI 3.0.02026-07-2417129274.8 KBInitiate OTP
Triggers an OTP SMS to the customer if the order is eligible for recovery. This call should be triggered from the backend after receiving a “declined” response and that the order is eligible for OTP process from /api/decide. The response will provide the widget token which is the JWT (JSON Web Token) for the OTP widget.
Headers
The merchant shop domain registered with Riskified.
Verification hash for the Request. Generated by performing an SHA256 encryption on the request's POST body and calculating the HMAC hash of the result using your Riskified authentication token. Please use UTF8 encoding.
As payloads are sent to Riskified in JSON format, value should be: application/json
Specify the version of the API to target. For example, to target the latest version of the API, use the following: application/vnd.riskified.com; version=2
Request body
Response
Widget token successfully returned