Request PEP Access
POST
/pep/request-accessOpen in the API playground →
Generate and send OTP to access a Politically Exposed Person (PEP) account. Staff must have PEP authorization role.
Endpoint
POST /api/v1/pep/request-access
Authentication
Authorizationstringheaderrequired
Bearer token (Admin JWT with pep_access_authorized: true)
Request Body
subscriber_idstringbodyrequired
PEP subscriber UUID
Response
{
"success": true,
"message": "OTP sent successfully",
"expiry_time": "2025-01-15T10:35:00Z"
}
What Happens
- System verifies subscriber is marked as PEP
- System verifies staff has PEP access authorization
- 6-digit OTP is generated and sent to staff's phone
- OTP expires in 5 minutes
- Access attempt is logged with IP and user agent
Errors
| Code | Description |
|---|---|
| 400 | Invalid request |
| 401 | User not authenticated |
| 403 | Not authorized for PEP access |
| 404 | Subscriber not found |
| 500 | Internal server error |