Get a short-lived download URL for one image of a verification session. The URL is valid for 15 minutes. Download the image at once, and do not store or share the URL. An image that Blaaiz no longer keeps answers 410. This endpoint allows 30 requests each minute and 600 requests each hour for each business, together with the Signa ID release document endpoint. The session must be APPROVED or REJECTED: any other status answers 409. The response carries Cache-Control: no-store. Signa must be enabled for your business. Required scope: compliance-kyc:pii:read. No scope bundle contains this scope, full-access included, so select it by name when you create or rotate your credentials.
Authorization
oauth2ClientCredentials compliance-kyc:pii:readUse your OAuth client credentials to obtain a short-lived Bearer token from POST /oauth/token.
In: header
Scope: compliance-kyc:pii:read
Path Parameters
The verification session id returned by the create endpoint.
uuidThe id of the image, from the list session documents endpoint. Letters, digits, _, : and - only.
^[A-Za-z0-9_:-]+$Response Body
application/json
application/json
application/json
application/json
application/json
application/json
application/json
curl --request GET \ --url 'https://example.com/api/external/compliance/kyc/sessions/9f2c7b41-6d3e-4c8a-9a20-1e6f0b5d7c33/documents/doc:901'{ "message": "Session document retrieved successfully.", "data": { "url": "https://storage.example.com/sessions/9f2c7b41/doc-901.jpg?expires=900&signature=EXAMPLE", "content_type": "image/jpeg", "expires_at": "2026-08-29T10:02:11.000Z" }}GETList session documents
List the images that a verification session captured: the identity document, the selfie, the proof of address, and the face image from the liveness check. The list holds descriptions only. To download an image, call the document URL endpoint with its `id`. Blaaiz keeps the face image from the liveness check for 30 days. After that, the list shows it with `available: false` and `unavailable_reason: NOT_RETAINED`. The session must be APPROVED or REJECTED: any other status answers 409. The response carries `Cache-Control: no-store`. Signa must be enabled for your business. Required scope: `compliance-kyc:pii:read`. No scope bundle contains this scope, `full-access` included, so select it by name when you create or rotate your credentials.
Signa ID overview
Next Page