POST /v3/phone/risk/ when you need phone intelligence before, instead of, or outside an OTP flow.
It does not send a code to the user. It creates a standalone API request, enriches the phone number, applies your phone-risk rules, and returns the same normalized phone block used by Phone Verification.
Request
Response
Billing and providers
Phone Risk API calls usephone_risk_api pricing, which is lower than full Phone Verification because no OTP is sent. Didit first uses the managed phone intelligence provider. If that provider is unavailable or returns no enrichment, Didit can fall back to IPQualityScore through the same normalized phone-enrichment interface.
Sandbox mode returns deterministic mock risk data and never spends managed provider credentials.