Request a Relay challenge
Requests a Privacy Pass challenge for a claim type. The challenge materials returned here are used to obtain a Privacy Pass token, which is then redeemable to read claims from Relays with the same claim type.
Headers
Request
Possible values:
- live_human_presence
- age_over18_germany
- age_over18_united_kingdom
- age_over18_verified
- age_over18_france
- age_over18_italy
- age_over18_brazil
- age_over18_australia
- age_over16_australia
- age_over21_verified
Do not assume this is a static enumeration; Persona may add new claim types in the future without a versioned update.
When true, Persona issues a sandbox-namespace challenge, redeemable only against sandbox Relays. When omitted or false, Persona issues a challenge for the claim-type namespace.
Response headers
The maximum number of requests permitted in the current rate limit window. For an API key with its own rate limit, requests count against both the key's limit and the environment's limit, and this header reports whichever is closer to being reached, so it can change between responses. On a 429 response, it reports the limit that rejected the request. For an API key without its own rate limit, it reports the environment's limit. Returned on every authenticated response.
The number of requests remaining in the current rate limit window for the limit reported in RateLimit-Limit. Returned on every authenticated response.
The unique identifier of the API log entry that recorded this request. Starts with req_. Include this value when reaching out to Persona support. Present on every authenticated response, including error responses.
Response
base64url-encoded PrivateToken challenge object (RFC 9577). Pass this to the Privacy Pass issuance flow to obtain a token.
base64url-encoded DER public key used to issue the token.
hex-encoded SHA-256 of token-key.

