Assisted registration login_hint specification

Last update:
Aug 21, 2026
Please refer to Portal Initiated Step-up’s Portal initiated step-up login_hint specification for the basic information. Below describes the difference from Portal initiated step-up.
  • JWE protected header
    “hnt” should be “regspec”.
  • JWE Ciphertext
    The example of compact serialized JWS is:
    eyJhbGciOiJIUzI1NiJ9.eyJpc3MiOiJjbGllbnRJRCIsImV4cCI6MTc0MDE3MTIzMCwiaWF0IjoxNzQwM TY3NjMwLCJqdGkiOiIxNjVhN2JhYi1kZTA2LTQ2OTUtYTJkZC05ZDhkNmI0MGU0NDMiLCJyZWdzcGVjIjp 7ImZ1bGxfcGhvbmVfbnVtYmVyIjoiKzE5ODc2NTQzMjEwIiwiaWRlbnRpZmllciI6IjMyNDEzNTM2NyIsI mRvYiI6IjEwLTI4LTE5NzgiLCJnaXZlbl9uYW1lIjoiSm9obiIsImZhbWlseV9uYW1lIjoiRG9lIiwiaWR lbnRpZmllcnMub3B0dW1DYXJlX2lkZW50aWZpZXJzLmFzc2lnbmluZ0F1dGhvcml0eSI6IjEuMi44NDAuM TE0MzUwLjEuMTMuNjIxLjIuNy41LjczNzM4NC42MCIsImVtYWlsIjoiYWJjQG1haWwuY29tIn19.6cGMsI zUnASEFDktLqp2C4KJ9lt8oIs2nXeMwH10p7I
    And this JWS is decoded as follows:
  • For overall claim information, please see Portal Initiated step-up login_hint Specification’s JWE Ciphertext section. The items below describe differences from Portal Initiated Step up’s login_hint.
  • The user’s identity information required for the registration would be under “regspec” claim. As it is mentioned above, all claims are optional, except assigningAuthority that is required when identifier is Optum Care Identifier (Medical Record Number). Other missing attributes could be filled by the user themselves, during Assisted registration.
  • “email”: the user’s email that is going to be used for HSID registration.
  • “full_phone_number”: the user’s phone number that is going to be used for HSID registration.
    • Format: +- o Country Code should start with “+” (e.g. US phone number requires +1)
    • Country Code and the rest of the phone number should be separated with “-” (hyphen)
    • full_phone_number should not include the extension code.

On this page

Powered by Aikyam @2025 All rights reserved