Get default permissions
Returns the permissions a player would receive by default in their jurisdiction, before any guardian consent. Supply the jurisdiction with at most one of `dateOfBirth`, `age`, or `kuid`; passing more than one is a bad request. With none, the player is treated as being of the current date's age. Nothing is persisted, so this is the endpoint for previewing what a jurisdiction permits before running an age gate.
Authorization
api-key In: header
Query Parameters
The jurisdiction of the player, as either an ISO 3166-1 alpha-2 country code or an ISO 3166-2 subdivision code.
^[A-z]{2}(-[A-z0-9]{1,3})?$The player's date of birth in YYYY-MM-DD format.
^[0-9]{4}(-[0-9]{2}(-[0-9]{2})?)?$dateThe player's age in years.
0 <= value <= 150The existing k-ID user ID of the player.
^[A-z0-9]{8}-[A-z0-9]{4}-[A-z0-9]{4}-[A-z0-9]{4}-[A-z0-9]{12}$uuidThe platform providing the age signal.
Value in
- "k-id"
- "meta-horizon"
- "apple-ios"
- "google-play"
- "xbox"
The minimum age in years reported by the platform.
The maximum age in years reported by the platform.
The platform-specific age category (e.g. "digital-youth", "13-15", "teen").
The declaration type from the platform (e.g. Apple AgeRangeDeclaration or Google userStatus).
The verification ID for the k-id platform signal.
^[A-z0-9]{8}-[A-z0-9]{4}-[A-z0-9]{4}-[A-z0-9]{4}-[A-z0-9]{12}$uuidResponse Body
application/json
application/json
curl -X GET "https://example.com/age-gate/get-default-permissions?jurisdiction=US-CA"{ "ageStatus": "LEGAL_ADULT", "ageCategory": "adult", "requiresParentConsentForDataProcessing": true, "permissions": [ { "name": "text-chat-public", "enabled": false, "managedBy": "GUARDIAN" }, { "name": "text-chat-private", "enabled": true, "managedBy": "PLAYER" }, { "name": "forums", "enabled": false, "managedBy": "PROHIBITED" } ]}{ "error": "INVALID_INPUT", "errorMessage": "Invalid jurisdiction"}Get age range for category POST
Converts a platform-reported age category into the age range it implies in a given jurisdiction. Supply the jurisdiction and a `platform` age signal naming the source platform and its category. Because each platform defines its own coarse categories, k-ID maps the category onto the numeric range of ages a player could be under that jurisdiction's rules.
Delete session POST
Deletes a player session by its session ID. The session must belong to the calling product. By default this is a soft delete: the session is marked revoked, is no longer queryable, and its player ID becomes reusable, but the record itself is retained. **Irreversible.** Setting `hardDelete` to `true` instead permanently deletes the session and its embedded consent — this cannot be undone. Available only to developers explicitly enabled for hard delete.