> ## Documentation Index
> Fetch the complete documentation index at: https://docs.easycred.co.in/llms.txt
> Use this file to discover all available pages before exploring further.

# Step 4 - Signal Redirect Returned

> Signals that the customer has returned from a third-party hosted redirect step (KYC, e-NACH Mandate, or e-Sign).



## OpenAPI

````yaml /api-reference/openapi.json post /api/v1/partner/journey/{journeyId}/redirect-returned
openapi: 3.1.0
info:
  title: EASYCRED LENDING APIs
  version: 1.0.0
  description: >-
    Comprehensive EASYCRED Partner API specification for Product Discovery,
    Hosted Journeys, Headless Journeys, Application Tracking, and Webhooks.
servers:
  - url: https://api.easycred.co.in
    description: Production API
  - url: https://dev.easycred.co.in
    description: Sandbox / Development API
security:
  - apiKeyAuth: []
tags:
  - name: Product Access
    description: Discover and query eligible loan products
  - name: Hosted Journey
    description: EASYCRED-hosted webview integration
  - name: Headless Journey
    description: Full native REST API journey integration
  - name: Tracking and Leads
    description: Track applications and query lead status
  - name: Webhooks
    description: Register, list, and manage real-time webhook subscriptions
paths:
  /api/v1/partner/journey/{journeyId}/redirect-returned:
    post:
      tags:
        - Headless Journey
      summary: Step 4 - Signal Redirect Returned
      description: >-
        Signals that the customer has returned from a third-party hosted
        redirect step (KYC, e-NACH Mandate, or e-Sign).
      operationId: signalHeadlessRedirectReturned
      parameters:
        - name: x-api-key
          in: header
          required: true
          description: >-
            Your active EASYCRED Partner API Key (format: ec_live_... or
            ec_test_...)
          schema:
            type: string
            example: ec_live_abc123_xyz789
        - name: x-timestamp
          in: header
          required: true
          description: >-
            Unix epoch seconds. Requests outside the 5-minute tolerance window
            are rejected.
          schema:
            type: string
            example: '1759820800'
        - name: x-nonce
          in: header
          required: true
          description: Unique UUID v4 nonce per request to prevent replay attacks.
          schema:
            type: string
            example: d3b07384-d113-4ec4-9d45-2f928e123456
        - name: x-signature
          in: header
          required: true
          description: >-
            HMAC-SHA256 signature calculated over method, path, timestamp,
            nonce, and raw request body.
          schema:
            type: string
            example: a1b2c3d4e5f67890123456789abcdef0123456789abcdef0123456789abcdef0
        - name: X-Journey-Session
          in: header
          required: true
          description: >-
            Journey session token returned by Step 1 (Initiate Headless
            Journey).
          schema:
            type: string
            example: jsess_eyJhbGciOiJIUzI1NiIsInR5cCI6IkpXVCJ9...
        - name: journeyId
          in: path
          required: true
          description: Journey ID returned by initiate
          schema:
            type: string
            example: jrn_67a12b3c4d5e6f7a
      requestBody:
        required: true
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/JourneyRedirectReturnedRequest'
      responses:
        '200':
          description: Signal acknowledged
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/JourneyRedirectReturnedResponse'
        '400':
          description: Bad Request - Validation or payload failure
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApiError'
        '401':
          description: >-
            Unauthorized - Invalid API key, signature mismatch, or replayed
            nonce
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApiError'
        '403':
          description: Forbidden - Insufficient permissions or unassigned product scope
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApiError'
        '404':
          description: Not Found - The requested resource or application does not exist
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApiError'
        '429':
          description: Rate Limit Exceeded - Too many requests in short interval
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApiError'
components:
  schemas:
    JourneyRedirectReturnedRequest:
      type: object
      required:
        - kind
      properties:
        kind:
          type: string
          enum:
            - KYC
            - MANDATE
            - ESIGN
          example: KYC
    JourneyRedirectReturnedResponse:
      type: object
      required:
        - success
        - data
      properties:
        success:
          type: boolean
          example: true
        data:
          type: object
          required:
            - nextAction
          properties:
            nextAction:
              type: object
              properties:
                type:
                  type: string
                  example: POLL_KYC_STATUS
                category:
                  type: string
                  example: POLL
    ApiError:
      type: object
      required:
        - success
        - error
      properties:
        success:
          type: boolean
          example: false
        error:
          type: string
          example: Invalid signature or expired timestamp
  securitySchemes:
    apiKeyAuth:
      type: apiKey
      in: header
      name: x-api-key
      description: EASYCRED Partner API Key

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.