omsWallet.wallet exposes one active walletAddress at a time.
Read and restore session state
CreateOMSWallet with the same publishable key and storage configuration on each application load. The constructor synchronously restores unexpired session metadata. Protected wallet operations also verify the corresponding signer credential.
wallet.session is a read-only snapshot:
walletAddressandexpiresAtare defined only for an active session.- Email auth metadata is
{ type: 'email', email }. - OIDC metadata is
{ type: 'oidc', flow, issuer, provider, providerLabel, email }. Optional provider fields can beundefined.
Understand storage defaults
Browser defaults use separate storage for completed sessions and pending redirects:- Completed session metadata uses
localStorage. - The default non-extractable WebCrypto P-256 signer stores its credential in IndexedDB.
- Temporary OIDC verifier and state data use
sessionStorage.
redirectAuthStorage before calling any redirect auth method, and make sure it remains available to the callback process.
For a non-browser runtime, provide application-owned implementations of the public StorageManager and CredentialSigner interfaces through the storage, redirectAuthStorage, and credentialSigner constructor options. See the package API reference for their exact contracts.
For the redirect convenience wrapper outside a browser, pass currentUrl and assignUrl. On completion, pass callbackUrl; either keep cleanUrl: false or provide replaceUrl when URL cleanup is required. An in-memory redirect store is suitable only when both stages run in the same process. See authentication for the lower-level browser flow.
Respond to expiry
The SDK makes an expired session inactive before protected operations. Subscribe while your application needs to update its routing or UI.wallet.walletAddress is now undefined. A newly constructed client can replay a stored expiry event to a listener. Starting authentication, completing a new session, or signing out clears that replay state.
List and activate wallets
List every wallet available to the authenticated credential:listWallets works with an active session and while manual auth selection is pending. After normal automatic auth, switch the active wallet with its server-side ID:
useWallet requires an active session and preserves its credential expiry and auth metadata. If auth returned PendingWalletSelection, call selection.selectWallet instead.
Create and activate another wallet
createWallet creates an Ethereum wallet by default and immediately makes it active. A pending manual selection must use selection.createAndSelectWallet instead.
Create a Solana wallet by setting its type explicitly:
Import and activate a wallet
importWallet validates and encrypts private-key material locally, sends only the encrypted material through the attested import transport, and activates the imported wallet:
0x prefix. Solana imports accept a 32-byte seed or 64-byte keypair as raw bytes, or the base58 encoding of either. Pass raw bytes when a valid base58 value is itself exactly 32 or 64 characters, because those string lengths are ambiguous and rejected. The SDK does not persist the plaintext key. WalletAccount.keyOrigin reports whether each returned wallet is enclave-created or imported.
Attestation failures throw an SDK error with code OMS_ATTESTATION_VERIFICATION_FAILED.
Issue an ID token for your backend
getIdToken asks OMS Wallet to issue an ID token that proves the active wallet session to your backend.
signInWithOidcIdToken during authentication. Treat client-supplied custom claims as untrusted context unless your backend independently controls or validates them. See backend wallet verification.
Review and revoke access
listAccess follows all service pages and returns direct or remote grants for the active wallet. Use listAccessPages when you want page-at-a-time rendering, and narrow on type before reading remote-session fields.
Authorize remote access
Remote access grants are bounded EVM smart sessions. Inspect the remote credential and show its returned metadata to the wallet owner before requesting approval: This example uses Polygon Amoy. Grant limits are raw EVM base-unit amounts. A native-transfer limit is cumulative, so1_000_000_000_000_000 wei authorizes up to 0.001 POL across the session.
credentialId and sessionId to revokeAccess to revoke that specific session. WaaS caps the requested session expiry at the remote credential’s expiry.
Operate a remote session from a backend
TypeScript also exportsRemoteAccessClient for a remote application’s backend. The backend owns and registers a persistent credential, reconciles the sessions approved for it, and prepares and executes transactions within each session’s grants. This backend credential and the application workflow are separate from the wallet owner’s active SDK session.
Manage smart sessions from a backend
Set up the persistent signer, owner approval handoff, application storage, backend session reconciliation, remote execution, revocation, and credential rotation.
RemoteAccessClient contracts.
Sign out locally
signOut clears the local session record, pending auth state, active wallet, and local credential signer where supported. It does not call the OMS service and does not revoke server-side access grants. Use revokeAccess separately for other grants before signing out when your account-management flow requires revocation.