Skip to content

Init logged-in registration

Request

Initializes a flow that will register WebAuthn credentials using a secondary device. Requested by the access device (e.g., desktop) and requires a logged-in user. Returns cross_device_ticket_id, which should be passed to the biometric device to start the device registration, such as by encoding it in a QR code.

Security
UserAccessToken
Bodyapplication/jsonrequired
usernamestringrequired

Account name for this Relying Party. This is used both for display purposes, as well as during recovery flows where the user is asked for the account name.

limit_single_credential_to_deviceboolean

Set to True in order to limit the creation of multiple credentials for the same account on a single authenticator. Default is False.

Default:false
curl -i -X POST \
  https://api.sbx.transmitsecurity.io/cis/v1/auth/webauthn/cross-device/register/init \
  -H 'Authorization: Bearer <YOUR_JWT_HERE>' \
  -H 'Content-Type: application/json' \
  -d '{
    "username": "string",
    "limit_single_credential_to_device": false
  }'

Responses

Bodyapplication/json
cross_device_ticket_idstringrequired

Identifies the cross-device flow. Required for starting the flow on the secondary device.

Response
{ "cross_device_ticket_id": "string" }