Domain Whitelisting

In case your organisation enforces strict network policies or you wish to implement an allowlist for added control, we recommend whitelisting the following domains using wildcard expressions to ensure full platform functionality.

The domains fall into two categories:

  • End-user domains – required for your users accessing services such as registration and authentication:

    • *.mpin.io - used by the platform’s general API (e.g., api.mpin.io) and by the Distributed Trusted Authority (DTA) endpoints.

      While the DTA’s .mpin.io base domain is fixed, the subdomain portion is dynamic and may change over time. For this reason, we recommend using the wildcard *.mpin.io instead of whitelisting individual subdomains.

      Examples of DTA subdomains: us-east4-dta1.mpin.io, europe-west2-dta1.mpin.io

  • Administrator domains – needed for accessing the MIRACL Trust Portal or performing back-end operations:

    • *.miracl.cloud - used by the MIRACL Trust Portal.