JWTClaim
Index
Enumeration Members
- accessTokenHash
- aceProfile
- actor
- address
- attestationLevel
- audience
- authContextClassReference
- authMethodsReference
- authTime
- authorizedActor
- authorizedParty
- birthdate
- clientId
- clientNonce
- codeHash
- confirmation
- custom
- destinationIdentity
- divertedTarget
- emailVerified
- entitlements
- events
- expirationTime
- expiresIn
- familyName
- gender
- givenName
- groups
- identityProvider
- isPrivateEmail
- issuedAt
- issuer
- jcardData
- jwtId
- locale
- maxAPIRequestCount
- mediaKeyFingerprint
- middleName
- name
- nickname
- nonce
- nonceSupported
- notBefore
- originalPassport
- originatingId
- originatingIdentity
- phoneNumber
- phoneNumberVerified
- picture
- preferredUsername
- profile
- realUserStatus
- resourcePriorityHeader
- roles
- scope
- sessionId
- sipCSeqNum
- sipCallId
- sipDate
- sipFromTag
- sipPriorityHeader
- sipViaBranch
- subject
- subjectPublicKey
- timeOfEvent
- tokenIntrospection
- transactionId
- transferSubject
- updatedAt
- userId
- vectorOfTrust
- vectorOfTrustMark
- verifiableCredential
- verifiablePresentation
- version
- website
- zoneinfo
Enumeration Members
accessTokenHash
Access Token hash value
aceProfile
"The ACE profile a token is supposed to be used with."
actor
Actor
address
Preferred postal address
attestationLevel
Attestation level as defined in SHAKEN framework
audience
Audience
authContextClassReference
Authentication Context Class Reference
authMethodsReference
Authentication Methods References
authTime
Time when the authentication occurred
authorizedActor
"Authorized Actor - the party that is authorized to become the actor"
authorizedParty
Authorized party - the party to which the ID Token was issued
birthdate
Birthday
clientId
Client Identifier
clientNonce
A nonce previously provided to the AS by the RS via the client. Used to verify token freshness when the RS cannot synchronize its clock with the AS."
codeHash
Code hash value
confirmation
Confirmation
custom
Custom claim with the given name
destinationIdentity
Destination Identity String
divertedTarget
Diverted Target of a Call
Preferred e-mail address
emailVerified
True if the e-mail address has been verified; otherwise false
entitlements
Entitlements
events
Security Events
expirationTime
Expiration Time
expiresIn
"Expires in. Lifetime of the token in seconds from the time the RS first sees it. Used to implement a weaker from of token expiration for devices that cannot synchronize their internal clocks."
familyName
Surname(s) or last name(s)
gender
Gender
givenName
Given name(s) or first name(s)
groups
Groups
identityProvider
isPrivateEmail
Indicates if the email address provided is a proxied address. Used predominantly by Sign In With Apple.
issuedAt
Issued At
issuer
Issuer
jcardData
jCard data
jwtId
JWT ID
locale
Locale
maxAPIRequestCount
Number of API requests for which the access token can be used
mediaKeyFingerprint
Media Key Fingerprint String
middleName
Middle name(s)
name
Full name
nickname
Casual name
nonce
Value used to associate a Client session with an ID Token
nonceSupported
Indicates whether the transaction is on a nonce-supported platform. If you sent a nonce in the authorization request but do not see the nonce claim in the ID token, check this claim to determine how to proceed. Used predominantly by Sign In With Apple.
notBefore
Not Before
originalPassport
Original PASSporT (in Full Form)
originatingId
Originating Identifier as defined in SHAKEN framework
originatingIdentity
Originating Identity String
phoneNumber
Preferred telephone number
phoneNumberVerified
True if the phone number has been verified; otherwise false
picture
Profile picture URL
preferredUsername
Shorthand name by which the End-User wishes to be referred to
profile
Profile page URL
realUserStatus
Indicates the liklihood of whether or not this appears to be a real user. Used predominantly by Sign In With Apple.
resourcePriorityHeader
Resource Priority Header Authorization
roles
Roles
scope
Scope Values
sessionId
Session ID
sipCSeqNum
SIP CSeq numeric header field parameter value
sipCallId
SIP Call-Id header field value
sipDate
SIP Date header field value
sipFromTag
SIP From tag header field parameter value
sipPriorityHeader
SIP Priority header field
sipViaBranch
SIP Via branch header field parameter value
subject
Subject
subjectPublicKey
Public key used to check the signature of an ID Token
timeOfEvent
Time of Event
tokenIntrospection
Token introspection response
transactionId
Transaction Identifier
transferSubject
Identifier used when transfering subjects. Used predominantly by Sign In With Apple.
updatedAt
Time the information was last updated
userId
vectorOfTrust
Vector of Trust value
vectorOfTrustMark
Vector of Trust trustmark URL
verifiableCredential
Verifiable Credential as specified in the W3C Recommendation
verifiablePresentation
Verifiable Presentation as specified in the W3C Recommendation
version
website
Web page or blog URL
zoneinfo
Time zone
List of registered and public claims.