Skip to main content
Scope
  • OIDC: GET /v2/userinfo
  • REST API: GET /connect/v2/verifications/{id}/userinfo

Provenance (shape)

The connection that produced the credential is identified by provider_id, connection_id, credential_id, and connection_instance_id inside provenance._metadata. These are not top-level userinfo fields. New sessions include all four. Older sessions created before identity snapshots may omit connection_id or credential_id until they expire.
Learn more: Provenance

Copy & Paste Types

Notes

  • claims keeps the source’s native field names and can vary by connection. Treat unknown fields as opaque.
  • evidence shape varies by provider. Most use { token, names }. Wallet credentials (mdoc, Verifiable Presentation) place fields such as issuerAuth or vpClaims directly on evidence. See Evidence & Data Integrity.