POST
Customer.Documents.ApproveSign
Customer portal: submit signature for the logged-in customer's order_proposals / purchase_orders / detail_orders. Same backend as Documents.ApproveSign and the public אישור הצעת מחיר page. Requires Customer.Login bearer token.
Permissions
- User must be logged in with a valid bearer token.
- The user must be from the same company domain as the request Host (call the API on that account subdomain or allowed custom domain). A token from another company returns success=0, error user_not_in_company.
- Returned or changed records are limited by the user permissions, team access, folder access, and account settings.
Action
- Runs the Customer.Documents.ApproveSign function and returns JSON.
Push Service
No push is sent because this function only reads data or returns helper information.
Automation
No automation is run for this function.
Special Instructions
- On a company subdomain (e.g. https://{user_domain}.bull36.com) the user must match that Host — Login and protected APIs reject another company with success=0, error user_not_in_company. On a main brand host (bull36.com, biz1.co.il, mastrocrm.com, …) the company domain gate is skipped.
- Client token only. Document cust_id must match the logged-in customer.
- Required: document_id + signatureJSON. Optional name / corporation.
Required Parameters
| Name | Type | Sample | Explanation |
|---|---|---|---|
document_idpost | int | 1627 | documents.id belonging to this customer. |
signatureJSONpost | string | data:image/png;base64,... | Signature PNG data URL. Aliases: signature, sign. |
Optional Parameters
| Name | Type | Sample | What it gives |
|---|---|---|---|
namepost | string | Demo | Signer name. |
corporationpost | string | 032451296 | ח.פ או ת.ז. |
Authentication
Send the bearer token returned by Login in the request header. The user must be from the same company domain as this Host — a token from another company is rejected (user_not_in_company).
Authorization: Bearer YOUR TOKEN
Sample Request
{
"url": "\/app\/Customer.Documents.ApproveSign",
"method": "POST",
"headers": {
"Authorization": "Bearer YOUR TOKEN"
},
"body": {
"document_id": "1627",
"signatureJSON": "data:image\/png;base64,...",
"name": "Demo",
"corporation": "032451296"
},
"url_user": "https:\/\/{user}.bull36.com\/app\/Customer.Documents.ApproveSign",
"url_domain": "https:\/\/{domain}\/app\/Customer.Documents.ApproveSign"
}Endpoint
POST /app/Customer.Documents.ApproveSign
POST https://{user}.bull36.com/app/Customer.Documents.ApproveSign
POST https://{domain}/app/Customer.Documents.ApproveSignSample Output
{
"success": 1,
"document_id": 1627,
"approve": 1
}JavaScript Example
const token = 'YOUR TOKEN';
const body = new URLSearchParams();
body.set('document_id', '1627');
body.set('signatureJSON', 'data:image/png;base64,...');
body.set('name', 'Demo');
body.set('corporation', '032451296');
const res = await fetch('/app/Customer.Documents.ApproveSign', {
method: 'POST',
headers: { Authorization: `Bearer ${token}` },
body
});
const data = await res.json();
console.log(data);Error Example
{
"success": 0,
"message": "Permission Denied"
}