Initiate collection
Initiate a data collection. Calling this will trigger the selected login method.
Request
Header Parameters
Specifies the API version to use. Must match the version of the endpoint you are targeting.
2026-04-01.Request Body
Company identifier.
The login method to use for authentication.
SWEDISH_MOBILE_BANKID_OTHER_DEVICE, SWEDISH_MOBILE_BANKID_OTHER_DEVICE_MOCK, SWEDISH_MOBILE_BANKID_SAME_DEVICE, SWEDISH_MOBILE_BANKID_SAME_DEVICE_CLIENT_SIDE_AUTHENTICATION, SWEDISH_MOBILE_BANKID_SAME_DEVICE_CLIENT_SIDE_AUTHENTICATION_MOCK, SWEDISH_MOBILE_BANKID_OTHER_DEVICE_TEST, SWEDISH_MOBILE_BANKID_SAME_DEVICE_TEST, SWEDISH_SECURITY_TOKEN or EMAIL.Typed parameters describing how to authenticate, consent and scope the collection. Can be empty or null depending on the loginMethod provided.
Properties below are from the EmailParameter subtype. View the full schema for full details.
Input required for email-link authentication flows.
Email address that will receive the verification link.
EMAIL.Narrows the collection to a subset of the products this client is configured for. Omit the field to collect the full configured set.
Each value is a product key of the form <market>.<category>.<product>. A three-segment key names a single product; a two-segment key names a whole category and collects every product the client is allowed in it. The market segment is always this market, insurance included.
The accepted keys are enumerated on this field. That list is this market's vocabulary, not your entitlement: which of them your client may use depends on its configuration. Keys for the other domain, if your client collects both, are enumerated in that domain's spec.
Rejected with 400: a key naming a category or product this market does not have; a named product the client is not configured for; or a filter that resolves to no products at all. An empty array is rejected for the same reason — omit the field instead.
A category this market does have is never an error on its own. It contributes whatever the client is allowed in it, and nothing when that is empty, so a caller sending a fixed superset keeps working when the configuration changes underneath them.
In France and Germany the configuration check is family-level rather than per product, because those markets record the product family rather than the product: a client configured for French pensions is accepted for any PER key.
se.banking, se.banking.checking_account, se.banking.credit_card, se.banking.savings_account, se.investments, se.investments.custody_account, se.investments.isk, se.investments.kf, se.investments.other, se.loans, se.loans.car, se.loans.mortgage, se.loans.other, se.loans.private, se.pension, se.pension.collective_occupational, se.pension.ips, se.pension.occupational, se.pension.other, se.pension.private, se.pension.public, se.savings, se.savings.deposit or se.savings.fixed_term.Responses
Data collection successfully initiated.
Body
Company that this collection is from
The UUID of the external user this collection belongs to, when it is linked to one (null otherwise). Can be used to build a Hub deep-link of the form /collections/user/{externalUserUuid}.
A key-value map containing potential extra information, depending on the company the collection is getting data from.
The collection ID of the request
The collection status must be polled before this timestamp. Failure to do so may result in the termination of the collection.
Current status of the collection.
RUNNING, LOGIN, CUSTOMER_ENROLLMENT_CHECK, TWO_FACTOR_PENDING, TWO_FACTOR_METHOD_SELECTION_TIMEOUT, CONTACT_FORM_PENDING, COLLECTION_INPUT_PENDING, COLLECTION_INPUT_TIMEOUT, COLLECTING, COMPLETED, COMPLETED_PARTIAL, COMPLETED_EMPTY, FAILED, FAILED_PDF_PARSE, FAILED_PDF_USER_INPUT, AUTHENTICATION_TIMEOUT, WAITING_FOR_USER_ACTION, INCORRECT_CREDENTIALS, INCORRECT_TWO_FACTOR_CODE, AUTHENTICATION_CANCELLED, AUTHENTICATION_CONFLICT, ACCOUNT_TEMPORARILY_LOCKED, AUTHENTICATION_MISMATCH, KYC_FORM, CONTACT_FORM, CUSTOMER_ENROLLMENT_REQUIRED, THIRD_PARTY_ERROR, AUTHENTICATION_ERROR or LOGIN_METHOD_NOT_APPLICABLE.curl https://api.insurely.com/collections \
-H "authorization-token: <authorization-token>" \
-H "Content-Type: application/json" \
-d '{
"company": "se-avanza",
"loginMethod": "SWEDISH_MOBILE_BANKID_OTHER_DEVICE",
"parameters": [
{
"personalNumber": "199001011234",
"type": "SWEDISH_BANKID"
}
]
}' \
-X POST{
"company": "se-avanza",
"extraInformation": null,
"id": "22e633bc-427d-4f4a-87cf-cfaca04ef351",
"pollingTimeout": "2024-09-26T12:59:10.545Z",
"status": "RUNNING"
}