Skip to main content
The process has two parts: first, you establish a client grant; then, the grantee exchanges it for a token to access Data Exchange endpoints.

Terms and Roles

Workflow

1

Create and manage the client grant

To issue a client grant to one or more service providers, contact Support and provide the following information:
  • A list of service providers and their role: Data Collector or Data Recipient
  • The source of data to exchange:
    • Held data: Data owned by the client issuing the grant
    • Aggregated data: Data collected by MX through end user-authorized connected institutions
    • All data: Access to both held and aggregated data
Grants expire one year from the date they are issued and can be extended by renewing. Grants can be revoked or re-issued at any time and take effect immediately. Renewing a grant does not interrupt concurrent data exchanges and does not require service providers to acquire a new token.To revoke or renew a client grant, contact Support.
2

Read the grant and exchange it for a token

After Support has created the client grant, the grantee can query for that grant by using the client GUID of the issuer and the full set of grantees. If the client grant is still active (status = GRANTED), exchange it for a signed JWT by calling Create Data Exchange Token with the grantee_client_guid and the grant guid.The token is valid for 1 hour.
3

Authenticate and access Data Exchange endpoints

Pass the token in the MX-3DX-TOKEN request header, alongside your standard Platform API credentials, to call the namespaced Data Exchange endpoints such as: