Z Zise Developers 简体中文

Query outstanding document-supplement requests and parameter templates

GET /v1/kyc/supplements scope: kyc:read
On behalf of a member · x-on-behalf-of required

Called on behalf of a member; x-on-behalf-of is required.

Returns id, level, and fields containing index, label, type, and required. Upload files, then submit answers through POST /v1/kyc/supplements/{id}. hosted_url is an optional compatibility field that merchant Apps may ignore.

⚠ The token in hosted_url is the credential itself. There is no second verification: anyone holding the link can submit these supplements. Do not log it or forward it to third parties in URL parameters.

Validity is creation time + 14 days; expired records are omitted. expires_in_days is always 14 and describes policy, not remaining days. Calculate remaining time from created_at yourself.

message prefers the translation generated for the member's language. An empty array means there are currently no pending supplements.

FieldTypeRequiredDescription
x-on-behalf-of string Required The member on whose behalf to call. Accepts external_member_id or mem_<uuid>. Omitting it returns member_context_required.

Response

200OK
{
  "data": [
    {
      "id": "ksup_456",
      "level": "L2",
      "fields": [
        {
          "index": 0,
          "label": "资金来源说明",
          "type": "text",
          "required": true
        }
      ],
      "hosted_url": "https://api.zinfra.vip/kyc/supplement/8f2a1c9e5b7d403a",
      "message": "请补充一张手持证件照,光线充足、四角完整。",
      "created_at": "2026-08-09T02:11:07.310Z",
      "expires_in_days": 14
    }
  ],
  "next_cursor": null,
  "has_more": false
}
400member_context_required: missing x-on-behalf-of.
404member_not_found, including members belonging to another merchant or suspended members.
Request
curl -X GET 'https://api.zinfra.vip/v1/kyc/supplements' \
  -H 'x-auth-token: Bearer $TOKEN' \
  -H 'x-on-behalf-of: $MEMBER_ID'
const res = await fetch("https://api.zinfra.vip/v1/kyc/supplements", {
  method: "GET",
  headers: {
    "x-auth-token": "Bearer $TOKEN",
    "x-on-behalf-of": "$MEMBER_ID",
  },
});
// Keep monetary amounts as strings, never numbers.
const data = await res.json();
import requests

res = requests.get(
    "https://api.zinfra.vip/v1/kyc/supplements",
    headers={
        "x-auth-token": "Bearer $TOKEN",
        "x-on-behalf-of": "$MEMBER_ID",
    },
)
# Use Decimal(str(...)) for amounts, not float.
data = res.json()
req, _ := http.NewRequest("GET", "https://api.zinfra.vip/v1/kyc/supplements",
    nil)
req.Header.Set("x-auth-token", "Bearer $TOKEN")
req.Header.Set("x-on-behalf-of", "$MEMBER_ID")
res, err := http.DefaultClient.Do(req)
// Decode amount fields as string, not float64.
HttpRequest req = HttpRequest.newBuilder()
    .uri(URI.create("https://api.zinfra.vip/v1/kyc/supplements"))
    .header("x-auth-token", "Bearer $TOKEN")
    .header("x-on-behalf-of", "$MEMBER_ID")
    .method("GET", HttpRequest.BodyPublishers.noBody())
    .build();
// Use String / BigDecimal for amounts, not double.
$ch = curl_init('https://api.zinfra.vip/v1/kyc/supplements');
curl_setopt_array($ch, [
  CURLOPT_CUSTOMREQUEST => 'GET',
  CURLOPT_RETURNTRANSFER => true,
  CURLOPT_HTTPHEADER => [
    'x-auth-token: Bearer $TOKEN',
    'x-on-behalf-of: $MEMBER_ID',
  ],
]);
$res = curl_exec($ch);
// Use bcmath / strings for amounts, not floatval.
200
{
  "data": [
    {
      "id": "ksup_456",
      "level": "L2",
      "fields": [
        {
          "index": 0,
          "label": "资金来源说明",
          "type": "text",
          "required": true
        }
      ],
      "hosted_url": "https://api.zinfra.vip/kyc/supplement/8f2a1c9e5b7d403a",
      "message": "请补充一张手持证件照,光线充足、四角完整。",
      "created_at": "2026-08-09T02:11:07.310Z",
      "expires_in_days": 14
    }
  ],
  "next_cursor": null,
  "has_more": false
}