Caller.
Who is calling, as the auth gateway made it
Figure 1Callerspecified
- kind
- view
- scope
- none
- key
- made for each request and never stored
- store
- none
- family
- kernel
Fields#
| field | type | required | note |
|---|---|---|---|
kind | one of a user | our agent | an outside agent | the platform's own work | the crawler | yes | |
acts_for | id | no | the user acted for |
came_in_through | one of a session | a key | a run | yes | |
client | id | no | |
access_scopes | AccessScope | yes | on the token |
signed_in_strength | one of password | passkey | second factor | no | |
signed_in_at | time | no | |
tenant | id | yes | the token is bound to one tenant |
grants | GrantRef | yes | after all three narrowings, for the place asked |
run | id | no |
Routes that use it#
/v1/session/whoamireturns it/v1/session/sign_inreturns it