Please reach out to [email protected] to
get a Shared Secret for your platform in order to generate JWT tokens.
If your app enforces security headers like Content Security Policy (CSP) or Cross-Origin Opener Policy (COOP), see Security Headers (CSP & COOP) for required configurations.
Tenant Scoped JWT Token Requirements
Your tenant-scoped JWT token must include the following fields:| Field | Description | Required |
|---|---|---|
| User’s email address | Yes | |
| name | User’s display name | Yes |
| externalId | Your system’s unique ID for this user | Yes |
| tenantExternalId | Your system’s ID for the user’s business | Yes |
| partnerId | Your unique vertical saas platform identifier provided by Reach | Yes |
| iat | Issued at time (in seconds since epoch) | Yes |
| exp | Expiration time (in seconds since epoch) | Yes |