Unified risk evaluation endpoint. Ingests a signal, evaluates it against your tenant policies, creates a signed risk decision, and optionally mints a fraud_decision_receipt for non-repudiation.
risk_signalsrisk_decision record is created with the outcomemint_receipt: true and issuer_id/kid are provided, a fraud_decision_receipt is minted via the attestation service| Action | Meaning |
|---|---|
allow | No policy matched or score below all thresholds |
challenge | MFA or step-up authentication required |
block | Reject the action entirely |
review | Route to manual fraud review queue |
| Receipt Type | Purpose |
|---|---|
fraud_decision_receipt | Records allow/challenge/block/review decision |
ato_alert_receipt | Records ATO alert events |
risk_block_receipt | Proves an action was blocked |
deepfake_detection_receipt | Records deepfake scan results |
velocity, ato, deepfake, impersonation, geo_anomaly, behavior, device_fingerprintuser.true, mints a fraud_decision_receipt after evaluation. Requires issuer_id and kid.allow | challenge | block | reviewmint_receipt: true and succeeded).API key for machine-to-machine authentication