Emver
Emver
Profiden+ Blog
Identity & KYC

DigiLocker Verification API

Generate a consent link, let the individual sign in to DigiLocker and share their Aadhaar, PAN or driving licence, and receive digitally signed, issuer-verified documents and eKYC data back into your workflow. No uploads, no OCR, no forgery risk.

Response
Async, by webhook
Inputs
2 required
Consent
Recorded per request
Billing
Per successful call
POST /v1/digilocker
Sandbox · Production
  1. Your application sends

    • Person's name and contact for the consent link*
    • Documents you want shared (Aadhaar, PAN, driving licence)*
  2. Profiden API

    Issues a hosted consent link, tracks the person's authorisation and assembles the result.

  3. Completed via

    DigiLocker consent flow, issuer-signed documents

  4. You receive by webhook

    • Consent status
    • eKYC demographic details
    • Issuer-signed documents (Aadhaar, PAN, driving licence)
    • Document metadata and timestamps
digilocker Full reference

What the DigiLocker Verification API does

DigiLocker is the Government of India's document wallet, and documents pulled from it are issued directly by the issuing authority. The DigiLocker Verification API turns that into a two-step flow: you request a consent link, the person completes the authorisation on their phone, and the verified documents plus eKYC details arrive in your case or via webhook.

It replaces the weakest link in onboarding, the photographed document, with an authoritative copy. It is the recommended path when you need the document itself, not just a validation of the number printed on it.

Consent is part of the contract

Consent is intrinsic to the flow: nothing is shared until the individual authorises it inside DigiLocker. Profiden records the authorisation event and links it to the case.

Benefits of the DigiLocker Verification API

Let the person share government-issued documents with consent, verified at source.

Issuer-verified documents

Documents come straight from the issuing authority, so tampering and Photoshop are off the table.

Consent-native

The person shares what they choose. Ideal for DPDP-aligned, transparent onboarding.

Mobile-first for candidates

A single link on WhatsApp, SMS or email completes the whole exchange.

Async by design

Poll the status or receive a webhook the moment documents land.

Use cases

DigiLocker Verification API use cases

Where the DigiLocker Verification API is typically called, and what it settles there.

Paperless employee onboarding

Collect verified Aadhaar and PAN without a single upload.

Digital account opening

Fully online KYC for lending, wallets and investment accounts.

Gig partner activation

Driving licence and identity in one consent step.

Tenant and property onboarding

Identity documents shared securely with the landlord or platform.

How the DigiLocker Verification API works

Request and response details, environments and a ready-to-import collection are in the developer console at console.profiden.com.

01

Authenticate

Call with your organisation API key. Sandbox and production use the same contract.

02

Create the consent link

Send the person's details and the documents you need. You receive a hosted link to share on any channel.

03

The person authorises

They sign in and choose what to share. Nothing moves without their approval.

04

Receive the result

Verified documents and details arrive by webhook or on the status endpoint, and attach to the case.

Built for the DPDP Act 2023

Consent recorded · Payloads not retained beyond your retention window · Every request traceable

Encryption in transit and at rest
Data processed in India
Per-request audit trail
Masked identifiers in responses

DigiLocker Verification API: frequently asked questions

What teams ask before adding the DigiLocker Verification API to their integration.

It depends on the person. Most complete the DigiLocker authorisation in under two minutes from receiving the link. Your integration polls the status or listens for the webhook rather than waiting on the request.

DigiLocker lets them create one with their Aadhaar-linked mobile during the same flow, so coverage is effectively everyone with Aadhaar.

Aadhaar (eKYC), PAN and driving licence are supported today. The documents arrive digitally signed by the issuer.

You receive a hosted consent link. Send it through any channel or open it from your own app; the person is returned to a completion screen and your system is notified.

Related APIs

APIs that usually run alongside the DigiLocker Verification API, on the same key.

All APIs

Get access to the DigiLocker Verification API

Tell us your use case and expected volume. We set up the organisation, share per-call pricing and issue keys.