Skip to main content
POST
Step 2 Send invitations (passkey)

Authorizations

X-Pubkey, X-Timestamp, X-Signature
string
header
required

Headers

X-Pubkey
string
required

Integrator's ECDSA public key (P-256 curve, compressed SEC1 format). Example: 0x038fedef7c12f93bbf342ad8943b7a825a3b41f61c9dc118b2c718efebabbf62fd

X-Timestamp
string
required

Unix timestamp in seconds (UTC). Must be within tolerance window (1 minute) to prevent replay attacks. Example: 1760375826

X-Signature
string
required

ECDSA signature (DER-encoded, hex with 0x prefix). Signs the message: {timestamp}{METHOD}{path_and_query}{json_body}. Example: 0x3045022100...

Body

application/json

Body to invite new users to an existing account

signedBody
object
required

The object that needs to be signed by the end user to invite a new user to a Byzantine account.

invitedBy
string<uuid>
required

A UUID string

Example:

"550e8400-e29b-41d4-a716-446655440000"

webAuthnStamp
string
required

Cryptographically passkey signed (stamped). For more info, see authentication methods.

Response

Users invited successfully

Response body when new users are successfully invited to a Byzantine account

accountId
string<uuid>
required

A UUID string

Example:

"550e8400-e29b-41d4-a716-446655440000"

newUsers
object[]
required
invitedBy
string<uuid>
required

A UUID string

Example:

"550e8400-e29b-41d4-a716-446655440000"

invitedAt
string<date-time>
required

The timestamp when the users were invited.