POST

Customer.Documents.ApproveSign

Customer portal: submit signature for the logged-in customer's order_proposals / purchase_orders / detail_orders. Same backend as Documents.ApproveSign and the public אישור הצעת מחיר page. Requires Customer.Login bearer token.

Permissions

  • User must be logged in with a valid bearer token.
  • The user must be from the same company domain as the request Host (call the API on that account subdomain or allowed custom domain). A token from another company returns success=0, error user_not_in_company.
  • Returned or changed records are limited by the user permissions, team access, folder access, and account settings.

Action

  • Runs the Customer.Documents.ApproveSign function and returns JSON.

Push Service

No push is sent because this function only reads data or returns helper information.

Automation

No automation is run for this function.

Special Instructions

  • On a company subdomain (e.g. https://{user_domain}.bull36.com) the user must match that Host — Login and protected APIs reject another company with success=0, error user_not_in_company. On a main brand host (bull36.com, biz1.co.il, mastrocrm.com, …) the company domain gate is skipped.
  • Client token only. Document cust_id must match the logged-in customer.
  • Required: document_id + signatureJSON. Optional name / corporation.

Required Parameters

NameTypeSampleExplanation
document_id
post
int1627documents.id belonging to this customer.
signatureJSON
post
stringdata:image/png;base64,...Signature PNG data URL. Aliases: signature, sign.

Optional Parameters

NameTypeSampleWhat it gives
name
post
stringDemoSigner name.
corporation
post
string032451296ח.פ או ת.ז.

Authentication

Send the bearer token returned by Login in the request header. The user must be from the same company domain as this Host — a token from another company is rejected (user_not_in_company).

Authorization: Bearer YOUR TOKEN

Sample Request

{
    "url": "\/app\/Customer.Documents.ApproveSign",
    "method": "POST",
    "headers": {
        "Authorization": "Bearer YOUR TOKEN"
    },
    "body": {
        "document_id": "1627",
        "signatureJSON": "data:image\/png;base64,...",
        "name": "Demo",
        "corporation": "032451296"
    },
    "url_user": "https:\/\/{user}.bull36.com\/app\/Customer.Documents.ApproveSign",
    "url_domain": "https:\/\/{domain}\/app\/Customer.Documents.ApproveSign"
}

Endpoint

POST /app/Customer.Documents.ApproveSign
POST https://{user}.bull36.com/app/Customer.Documents.ApproveSign
POST https://{domain}/app/Customer.Documents.ApproveSign

Sample Output

{
    "success": 1,
    "document_id": 1627,
    "approve": 1
}

JavaScript Example

const token = 'YOUR TOKEN';
const body = new URLSearchParams();
body.set('document_id', '1627');
body.set('signatureJSON', 'data:image/png;base64,...');
body.set('name', 'Demo');
body.set('corporation', '032451296');

const res = await fetch('/app/Customer.Documents.ApproveSign', {
  method: 'POST',
  headers: { Authorization: `Bearer ${token}` },
  body
});
const data = await res.json();
console.log(data);

Error Example

{
    "success": 0,
    "message": "Permission Denied"
}