How do I connect Sumsub to a decision flow?
Add Sumsub as a connection in your workspace authenticating with HMAC-signed requests, with the credentials your own contract issued — ArboRule calls the provider as you, and never holds a contract on your behalf. Once the connection exists, any flow in the workspace can place a Connection node and choose one of its operations. The credentials live on the connection, not in the flow, so a policy owner can use Sumsub in a decision without ever seeing the secret.
Can I test Sumsub without touching production?
Sumsub exposes one host for both environments, so there is no separate sandbox to point at. Test runs still execute in Sandbox and are recorded separately in decision history, but the call goes to the same place as production — so guard it with your own test credentials, rate limits, or data.
What can a flow call on Sumsub?
4 operations, including “Create an applicant profile”, “Generate a WebSDK or MobileSDK token”, “Get an applicant review status”. Each one is a step you place on the canvas and map into the fields your rules read, and most flows start with “Create an applicant profile”. The list comes from the same manifest the engine uses to make the call, so this page cannot describe an operation the product does not have.
Where in a decision should Sumsub be called?
An identity check gates everything downstream — a score computed against an unverified identity is a score about nobody. These calls sit near the top of a flow, with the branch for a partial or failed match written explicitly rather than left as an exception.