API/Mandates
v1.0.0-beta.mdGet API keys
Mandates

Mandates

What a person authorised a machine to do — scope, ceiling, expiry, constraints — and the calls that issue, check, consume, read and revoke it.

A mandate is issued from a live capture, is immutable once written, and is the only reason an agent may act. Every mandate call sits under https://api.sidaxis.com/functions/v1/ and carries x-sidaxis-api-key, x-sidaxis-timestamp and x-sidaxis-nonce.

CallPageWhat it does
GET mandate-scopesscopesThe eight canonical scopes with human labels
POST mandate-issueissueIssue a mandate from a live capture
POST mandate-checkcheckAdvisory: would this action fit? Nothing moves
POST mandate-consumeconsumeAuthoritative: the only call that moves the ceiling
GET mandate-getgetOne mandate with its statement, or a list by status
POST mandate-revokerevokeImmediate, terminal revocation
Sidaxis is the human authorisation layer. It never moves money, holds funds or settles. The machine-readable contract is openapi.yaml.
Sidaxis API documentationQuickstartAuthenticationHosted or headlessSandbox and productionIdempotencyRate limitsErrors and refusalsField namesWebhooksAssuranceThe document ruleAlias availabilityMerchant themeMCP serverCompatibilityStatusRoadmapChangelogIdentityEnroll an identityRecognise a personDisclose an attributeMandatesThe eight scopesIssue a mandateCheck an actionConsume a mandateRead a mandateRevoke a mandateReceiptsRead a merchant's receiptsVerify a receiptHosted sessionsCreate a hosted sessionConsume a hosted sessionOne Face for agents