Session data

Get a short-lived download URL for one image of a verification session. The URL is valid for 15 minutes. Download the image at once, and do not store or share the URL. An image that Blaaiz no longer keeps answers 410. This endpoint allows 30 requests each minute and 600 requests each hour for each business, together with the Signa ID release document endpoint. The session must be APPROVED or REJECTED: any other status answers 409. The response carries Cache-Control: no-store. Signa must be enabled for your business. Required scope: compliance-kyc:pii:read. No scope bundle contains this scope, full-access included, so select it by name when you create or rotate your credentials.

GETapi-prod.blaaiz.com/api/external/compliance/kyc/sessions/{sessionId}/documents/{documentId}

Authorization

oauth2ClientCredentials compliance-kyc:pii:read
AuthorizationBearer <token>

Use your OAuth client credentials to obtain a short-lived Bearer token from POST /oauth/token.

In: header

Scope: compliance-kyc:pii:read

Path Parameters

sessionId*string

The verification session id returned by the create endpoint.

Formatuuid
documentId*string

The id of the image, from the list session documents endpoint. Letters, digits, _, : and - only.

Match^[A-Za-z0-9_:-]+$

Response Body

application/json

application/json

application/json

application/json

application/json

application/json

application/json

Get a session document URL
curl --request GET \  --url 'https://example.com/api/external/compliance/kyc/sessions/9f2c7b41-6d3e-4c8a-9a20-1e6f0b5d7c33/documents/doc:901'
{  "message": "Session document retrieved successfully.",  "data": {    "url": "https://storage.example.com/sessions/9f2c7b41/doc-901.jpg?expires=900&signature=EXAMPLE",    "content_type": "image/jpeg",    "expires_at": "2026-08-29T10:02:11.000Z"  }}