Gyvar docs

Check your credential

Returns the key that signed the request. Use it to check your signing works.

GET
/whoami

Authorization

KeyID Timestamp Nonce Signature
X-Gyvar-Key<token>

Your key id, gyv_k_live_... or gyv_k_sandbox_....

In: header

X-Gyvar-Timestamp<token>

Unix seconds. Must be within 5 minutes of our clock.

In: header

X-Gyvar-Nonce<token>

A unique value per request. Replays are rejected.

In: header

X-Gyvar-Signature<token>

Ed25519 signature over the canonical string. See the Signing guide.

In: header

Response Body

application/json

application/json

curl -X GET "https://example.com/whoami"
{  "data": {    "key_id": "gyv_k_sandbox_7f2a1c9b4e6d",    "name": "shop-production",    "mode": "live",    "capabilities": [      "read",      "receive"    ]  }}