Share evidence with the authority
const url = 'https://example.com/api/v1/evidence/disclosures';const options = { method: 'POST', headers: { cookie: 'bl_%3Cslug%3E_session=%3Cbl_%3Cslug%3E_session%3E', 'Content-Type': 'application/json' }, body: '{"process_id":"example","recipient":"example","reason":"example","consent":true}'};
try { const response = await fetch(url, options); const data = await response.json(); console.log(data);} catch (error) { console.error(error);}curl --request POST \ --url https://example.com/api/v1/evidence/disclosures \ --header 'Content-Type: application/json' \ --cookie bl_%3Cslug%3E_session=%3Cbl_%3Cslug%3E_session%3E \ --data '{ "process_id": "example", "recipient": "example", "reason": "example", "consent": true }'Sends the evidence bundle of a process, with the consent and the reason, to the authority, for example in a dispute. Anchors first, so the bundle carries an independent timestamp. Recorded as evidence.
Authorizations
Section titled “Authorizations”Request Bodyrequired
Section titled “Request Bodyrequired”object
Only authority, the default.
Why the evidence is shared; at least 5 characters.
Must be true: explicit consent to share.
Example generated
{ "process_id": "example", "recipient": "example", "reason": "example", "consent": true}Responses
Section titled “Responses”OK.
object
The id at the authority.
The DID of the recipient.
Example generated
{ "id": "example", "remote_id": "example", "process_id": "example", "recipient": "example", "reason": "example", "given_by": "example", "shared_at": "2026-04-15T12:00:00Z"}No consent, another recipient, or no reason.
The body of every failed call to a management API.
object
object
Stable, machine-readable: invalid_request, unauthenticated,
forbidden, not_found, conflict, upstream_unavailable,
unavailable, internal, or a more specific code of the operation.
For people; may change between versions.
Example
{ "error": { "code": "not_found", "message": "unknown negotiation" }}No valid session, DPoP-bound token or API key.
The body of every failed call to a management API.
object
object
Stable, machine-readable: invalid_request, unauthenticated,
forbidden, not_found, conflict, upstream_unavailable,
unavailable, internal, or a more specific code of the operation.
For people; may change between versions.
Example
{ "error": { "code": "not_found", "message": "unknown negotiation" }}The caller lacks the role this operation needs; or a change with the session cookie came from a page of another site (cross_site_request, decisions #83).
The body of every failed call to a management API.
object
object
Stable, machine-readable: invalid_request, unauthenticated,
forbidden, not_found, conflict, upstream_unavailable,
unavailable, internal, or a more specific code of the operation.
For people; may change between versions.
Example
{ "error": { "code": "not_found", "message": "unknown negotiation" }}The authority could not be reached or refused.
The body of every failed call to a management API.
object
object
Stable, machine-readable: invalid_request, unauthenticated,
forbidden, not_found, conflict, upstream_unavailable,
unavailable, internal, or a more specific code of the operation.
For people; may change between versions.
Example
{ "error": { "code": "not_found", "message": "unknown negotiation" }}