---
title: "Read inline email signup terms before sign-in"
description: "Server-only, requires guest_preferences.write and an exact registered Origin. Display the returned text and environment notice beside the explicit signup action. Reading terms does not subscribe anyone."
---

`GET /v1/developer/guest/signup-disclosure`

**Operation ID:** `getDeveloperGuestSignupDisclosure`

Server-only, requires guest_preferences.write and an exact registered Origin. Display the returned text and environment notice beside the explicit signup action. Reading terms does not subscribe anyone.

## Contract status

| Field | Value |
| --- | --- |
| Maturity | `preview` |
| Required capability | `guest_preferences.write` |
| Freshness class | `authenticated-state` |
| Quota cost | `1` |

All operations require a Kismet Developer Bearer credential. Collection and resource authority is resolved from the credential's installation grants; identifiers in the URL never grant access.

## Request parameters

| Name | In | Type | Required | Description |
| --- | --- | --- | --- | --- |
| `origin` | header | string | yes |  |

## Request body

This operation has no JSON request body.

## cURL

Set `KISMET_API_ORIGIN=https://api.ksmt.app` and configure `KISMET_DEVELOPER_API_KEY` in your environment. Run server-credential requests from your backend, not browser code.

```sh
curl --request GET \
  "$KISMET_API_ORIGIN/v1/developer/guest/signup-disclosure" \
  --header "Authorization: Bearer $KISMET_DEVELOPER_API_KEY" \
  --header "Accept: application/json" \
  --header "origin: $KISMET_SITE_ORIGIN"
```

## Responses

| Status | Meaning |
| --- | --- |
| 200 | Success. |
| 400 | Invalid request parameters or body. |
| 401 | Missing, invalid, expired, or inappropriate credential/session. |
| 403 | Credential lacks the required grant/capability, or an origin/CSRF check failed. |
| 404 | The authorized resource was not found. |
| 409 | Request conflicts with the installation environment or current state. |
| 429 | Rate limit or quota exceeded; inspect response metadata before retrying. |
| 503 | A required Kismet dependency is temporarily unavailable. |

### 200 response schema

Content type: `application/json`. Required fields, nullable values, and nested structures are defined below.

<details>
<summary>View complete response schema</summary>

```json
{
  "type": "object",
  "additionalProperties": false,
  "required": [
    "disclosure",
    "disclosureHash"
  ],
  "properties": {
    "disclosure": {
      "type": "object",
      "additionalProperties": false,
      "required": [
        "version",
        "collection",
        "environment",
        "text",
        "privacyUrl",
        "notice"
      ],
      "properties": {
        "version": {
          "type": "string"
        },
        "collection": {
          "type": "object",
          "additionalProperties": false,
          "required": [
            "id",
            "slug",
            "name"
          ],
          "properties": {
            "id": {
              "type": "string"
            },
            "slug": {
              "type": "string"
            },
            "name": {
              "type": "string"
            }
          }
        },
        "environment": {
          "type": "string",
          "enum": [
            "TEST",
            "LIVE"
          ]
        },
        "text": {
          "type": "string"
        },
        "privacyUrl": {
          "type": "string",
          "format": "uri"
        },
        "notice": {
          "type": [
            "null",
            "string"
          ]
        }
      }
    },
    "disclosureHash": {
      "type": "string"
    }
  }
}
```

</details>

## Machine-readable sources

- [This page as Markdown](/api/reference/get-developer-guest-signup-disclosure.md)
- [Developer API OpenAPI v0.7.25](/openapi.json)
