How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

GSMA Open Gateway Age Verification API

Operations to verify the age of a user.

GSMA Open Gateway Age Verification API is one of 34 APIs that GSMA Open Gateway publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Age Verification. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and an API reference.

This API exposes 1 operation across 1 path, and defines 21 schemas. It is described by OpenAPI 3.2.0, at version 0.2.1.

Requests are made against a single base URL, {apiRoot}/kyc-age-verification/v0.2.

1 operations 1 paths 21 schemas 1 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
0.2.1
Server
{apiRoot}/kyc-age-verification/v0.2
Authentication
OpenID Connect
License
Resource Areas
1

Authentication & Security 1

GSMA Open Gateway Age Verification API declares 1 security scheme for authenticating requests. It supports OpenID Connect (openId) discovered at https://example.com/.well-known/openid-configuration.

Paths & Operations 1

Across 1 path, the API surfaces 1 operation — 1 POST. Each is listed below with its method, path, parameters, and response codes.

Age Verification 1

Operations to verify the age of a user.

POST
/verify
Verify Age Threshold
verifyAge 1 param body → 200400401403404422

Schemas 21

The contract defines 21 schemas that model the data the API accepts and returns. The most detailed are VerifyRequestBody (12 properties), VerifyResponseBody (5 properties), ErrorInfo (3 properties). Each schema is shown below with its type and property counts.

FamilyName
string
Last name, family name, or surname of the customer.
ParentalControl
string
Indicate "true" if the subscription associated with the phone number has any kind of parental control activated and "false" if not. If the information is not a…
GivenName
string
First/given name or compound first/given name of the customer.
XCorrelator
string
MiddleNames
string
Middle name/s of the customer.
IdentityMatchScore
integer
The overall score of identity information available in the API Provider, information either provided in the request body comparing it to the one that the API P…
Email
string
Email address of the customer in the RFC specified format (local-part@domain).
FamilyNameAtBirth
string
Last/family/sur- name at birth of the customer.
AgeThreshold
integer
The age to be verified. The indicated range is a global definition of maximum and minimum values allowed to be requested. It is important to note that this ran…
ErrorInfo
object
3 properties 3 required
VerifiedStatus
boolean
Indicate true if the information provided has been compared against information based on an identification document legally accepted as an age verification doc…
ContentLock
string
Indicate "true" if the subscription associated with the phone number has any kind of content lock (i.e certain web content blocked) and "false" if not. If the…
IdDocument
string
Id number associated to the official identity document in the country. It may contain alphanumeric characters.
Name
string
Complete name of the customer, usually composed of first/given name and last/family/sur- name in a country. Depending on the country, the order of first/give n…
IncludeContentLock
boolean
If this parameter is included in the request with value true, the response property contentLock will be returned. If it is not included or its value is false,…
VerifyResponseBody
object
Response to an age verification request
5 properties 1 required
PhoneNumber
string
A public identifier addressing a telephone subscription. In mobile networks it corresponds to the MSISDN (Mobile Station International Subscriber Directory Num…
Birthdate
string
The birthdate of the customer, in RFC 3339 / ISO 8601 calendar date format (YYYY-MM-DD).
AgeCheck
string
Indicate "true" when the age of the user is the same age or older than the age threshold (age = age threshold), and "false" if not (age < age threshold). If th…
VerifyRequestBody
object
Request to verify the age threshold provided.
12 properties 1 required
IncludeParentalControl
boolean
If this parameter is included in the request with value true, the response property parentalControl will be returned. If it is not included or its value is fal…

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

open-gateway-age-verification-api-openapi.yml Raw ↑

Other APIs GSMA Open Gateway publishes across the network.

GSMA Open Gateway API Product API
GSMA Open Gateway API Product Order API
GSMA Open Gateway Application API
GSMA Open Gateway Application Owner API
GSMA Open Gateway Call Forwarding information retrieval API
GSMA Open Gateway Check Device Swap API
GSMA Open Gateway Check SIM swap API
GSMA Open Gateway Check Subscriber Tenure API
GSMA Open Gateway Connected Network Type API
GSMA Open Gateway Device reachability status API
GSMA Open Gateway Device reachability status subscription API
GSMA Open Gateway Discovery API
Where this information came from

This is an independent, third-party profile of GSMA Open Gateway Age Verification API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.