Mint a chip Active Authentication challenge
/v1/kyc/checks/{id}/chip-challengeRequires an API client bearer token.
Mints a fresh, single-use Active Authentication nonce (8 bytes, base64-encoded) for a case's chip read, valid for 15 minutes. No Idempotency-Key is required — minting is cheap and repeatable; every call mints an independent challenge, and an expired one is re-minted rather than extended. Callable by `user` or `admin` callers, which includes API clients (OAuth2 client-credentials).
Parameters
Path parameters
| Name | Required | Description |
|---|---|---|
| id | required |
Example
curl -X POST https://api.rigid.fi/v1/kyc/checks/{id}/chip-challenge \
-H "Authorization: Bearer $RIGID_API_TOKEN"Responses
200A fresh chip Active Authentication challenge was minted.
400Validation error
401Authentication required
403Forbidden
404No such check
409The case is in a terminal state and can no longer accept a chip challenge, or the case's pinned policy does not include chip_authenticity (chip_not_accepted)
429Too many KYC writes from this caller — see Retry-After
500Internal server error