---
title: "SignedInIdentity"
description: "an identity a person captured in a browser; the agent never types a password"
section: concepts
address: /concepts/signedinidentity
contract: 0476e35e6e275db5
---

# SignedInIdentity

an identity a person captured in a browser; the agent never types a password

[figure: SignedInIdentity is a definition at tenant scope. The drawing shows its fields and the objects that they point at.]

| property | value |
|---|---|
| kind | definition |
| scope | tenant |
| key | its id |
| store | postgres |
| family | sources |



## Fields


| field | type | required | note |
|---|---|---|---|
| `platform` | `text` | yes |  |
| `label` | `text` | yes |  |
| `vault_entry` | `id` | yes | the store entry: made from the account when the session material reads one, so one account on one platform has one entry whatever it is called, and from the label otherwise |
| `account` | `text` | no | the platform's own id of the account that the session belongs to, read at the hold by the session material's account cookie or pattern; absent when the platform gives no way to read it |
| `names` | `[text]` | no | the other labels this account was held under, kept as names for it |
| `held_as` | `id` | no | the store entry that holds this account now, when a later hold of the same account replaced this entry; a run under this entry follows it there |
| `last_probe` | [ControlResult](/concepts/controlresult) | no |  |
| `state` | [Readiness](/concepts/readiness) | yes |  |



## Routes that use it
- [`/v1/act/hold_identity`](/reference/act/hold_identity) returns it
