Connectors

ID.me Community Verification Connector

The ID.me Community Verification connector lets you verify a user’s community affiliation with ID.me in your PingOne DaVinci flow.

The connector redirects the user to ID.me, where they verify their affiliation with communities such as military, teacher, first responder, nurse, and student, and returns verified user attributes that you can use in your flow.

Setup

Resources

You can find more information and setup help in the following:

For help with your ID.me integration, contact ID.me partner support at partnersupport@id.me.

Requirements

To use the connector, you’ll need:

  • An ID.me developer account.

  • An ID.me application with a client ID and client secret.

  • The DaVinci Redirect URI added to your ID.me application configuration.

Configuring the ID.me Community Verification connector

Add the connector in PingOne DaVinci as shown in Adding a connector, then configure it as follows.

Connector configuration

Setting Description

Redirect URI

The PingOne DaVinci redirect URI for this connector. This value is provided automatically as a read-only field and should be copied into your ID.me application configuration.

Provider Name

The display name for this connection shown in the flow.

Client ID

The client ID from your ID.me application.

Client Secret

The client secret from your ID.me application.

Authorization Endpoint

The ID.me endpoint used for authorization. Select Single Group to verify against one community verification policy, or Multiple Groups to let users verify against more than one group.

Scope

The community verification policies to request. The openid scope is mandatory. Select one or more additional community scopes, such as military, teacher, first responder, nurse, or student.

Send state with request

Optional. Sends a unique state value with every request.

Application Return To URL

Optional. When using the embedded flow player widget with an identity provider (IdP) or social login connector, provide a callback URL for returning to your application.

Using the connector in a flow

Verifying user community affiliation

The Redirect to ID.me capability redirects the user to the ID.me Community Verification endpoint, where they prove their community affiliation and consent to share their attributes with your application.

At a high level:

  1. The Redirect to ID.me capability sends the user to ID.me to authenticate and verify their community affiliation using the scopes you selected in the connector configuration.

  2. After verification, ID.me redirects back to PingOne DaVinci and the connector outputs the user attributes, such as the user’s ID and access tokens, that you can evaluate in your flow.

Users who have already verified their community affiliation with ID.me through a partner in the ID.me network are not prompted to verify again unless their credentials expire. These users still have to accept the permissions to share the user attributes your application requests. To enforce community verification for your application, contact ID.me at partnersupport@id.me.

Test the flow by clicking Save, Deploy, and Try Flow.

Capabilities

Redirect to ID.me

Redirect to the ID.me Community Verification Endpoint

Show details
  • Properties

  • Output Schema

Display Name button
showPoweredBy toggleSwitch
skipButtonPress toggleSwitch
  • output object

    • sub string

    • aud string

    • jti string

    • iss string

    • iat number

    • exp number

    • auth_time string

    • tokens object

      • access_token string

      • refresh_token string

      • id_token string

      • token_type string

      • expires_at number

    • connectionId string

    • connectorId string