Receive the patient selection
Hosted by the HIP/HIU, not by ABDM. ABDM calls this endpoint at the callback URL registered for your bridge, so the path below is relative to that URL.
This is the call back API for the selection API. This API needs to implement by HIP to receive all selected open order.
<ol type='1'> <li> <b>Header</b> <ol type='a'> <br/> <li>Authorisation will be provided by the gateway session API after the successful verification of client ID and Secret [ Example: Bearer <TOKEN> ]</li><li>REQUEST-ID unique UUID[ Example: 18235d89-cb13-479d-ad71-7a57d5f669a8 ]</li> <li>TIMESTAMP actual time of the requested was initiated[ Example: 2022-10-06T10:10:00.587Z ]</li> <li>X-HIP-ID consent manager ID[ Example: sbx ]</li> </ol> </li> <br/> <li> <b>Request Body</b> <ol type='a'><br/> <li>intent This is a key value pair which contains the purpose [ Example: type: PAYMENT_ORDER ]</li> <li>openOrderRequestId from the share open order requestId [ Example: 059fcb69-****-4789-a049-62db16c7b5a0 ]</li> <li>ABHA address of the user</li> <li>Procedures which contains the list of open order</li><li>Payment Bundle: which contains payment detail.</li> </ol></ol> Unique UUID for track the end to end request transaction Actual time of the request was initiated, ISO 8601 represents date and time by starting with the year, followed by the month, the day, the hour, the minutes, seconds and milliseconds. Identifier of the health information provider to which the request was intended The intention of share API call This is the response request-id which is generated from the share API The abha address of the patient. Should start with Alphanumeric . and _ in the middle and must be ending with @abdm or @sbx The category of the procedure Unique identifier for the service Name of the service Description of the service Amount for the service OK Bad Request. The request could not be processed because it was malformed or failed validation - a missing mandatory field, a value in the wrong format, or a header that did not match the body. Unauthorized. The request carried no valid credentials, or the access token has expired. Obtain a fresh token from the session API and retry. Forbidden. The caller is authenticated but is not permitted to perform this operation on this resource.Authorizations
Authorizationbearer tokenRequiredHeaders
REQUEST-IDstringRequiredTIMESTAMPstringRequiredX-HIP-IDstringRequiredBody
intentstringRequiredopenOrderRequestIdobjectRequiredabhaAddressstringRequiredproceduresobject[]Requiredprocedures.categorystringRequiredprocedures.servicesobject[]Requiredprocedures.services.serviceIdstringprocedures.services.namestringRequiredprocedures.services.descriptionstringprocedures.services.amountnumberRequiredResponses
200400401403
Where this fits
hiecm-scan-and-pay.yaml declares this callback at module level and names no call against it. Which call produces it is not documented, so this page does not say.