Skip to main content
GET
Returns the policy in force for this reviewer's tenant.

Authorizations

esectra_session
string
cookie
required

A signed-in reviewer's session. httpOnly and SameSite=Lax; set by POST /v1/control/sessions and only usable once the second factor is met.

Response

The effective policy: the tenant's own, or Esectra's default

The effective policy, as a reviewer may read it.

applies_to
string
required

What the policy governs.

checks
object[]
required

The checks a verification session must satisfy, in the order they are evaluated.

customization
string
required

Who may change the policy. ESECTRA_MANAGED during the pilot.

outcomes
object
required

What each outcome leads to.

source
enum<string>
required

Whether this is the tenant's own policy or Esectra's default.

Available options:
ESECTRA_DEFAULT,
ORGANIZATION
status
string
required

Always ACTIVE: the policy this route returns is the one in force.

version
string
required

The version decisions cite.

effective_from
string | null

When this version was published. Absent for the default, which has been in force since the deployment existed.