Skip to main content
POST
Error

Headers

x-partner-id
string<uuid>
required

Your Partner ID (UUID) from the Developer Dashboard.

x-agent-api-key
string

Opaque API key returned once at bind or rotate. Mutually exclusive with body signedMessage. Required for API-key-only agents.

Example:

"air_ag_…"

Body

application/json
scope
string

Space-delimited scopes for the agent JWT. Must be a subset of the bound key's scopes. Omit to use the full bound set.

Example:

"openid credentials.read credentials.verify"

signedMessage
object

Mutually exclusive with x-agent-api-key. The bound key must have a stored public key.

Response

Agent JWT issued

accessToken
string
required

Agent JWT (type=agent), valid for 15 minutes. Send as Authorization: Bearer.

user
object
required