Onchain signers will hold a shard of the Onchain wallet’s key on their mobile device. They will use this to sign transactions after they reach consensus and can clone their shard for new Onchain Signers.
Onchain Signer is an added permission on top of a designated user role, and only Administrators, Authorized Signatories, Approvers, Initiators and Full Traders can have this access.
The steps below outline how to add additional Onchain Signers to your portfolio.
Administrator: Add the Onchain Signer permission for new signers
Log into Prime on your desktop/web browser.
Open Settings by clicking the gear icon.
Navigate to the Onchain Settings by clicking the Onchain planet icon.
Click Add Onchain Signer.
Designate the chosen user to have Onchain signer permissions.
The user must be a Authorized Signatory, Approver, Admin, Initiator or Full Trader
Approve this request through consensus.
New Onchain Signers & Device Recovery User: start the Enroll Device Request process
In the Prime mobile app navigate to the Tasks tab.
Open the Onchain Signer Device Enrollment activity.
Click Complete Onchain Device Enrollment and Continue.
Enable biometrics (Face ID). Note that biometrics must be enabled on the iphone to complete this step, which can be changed in your iphone Settings > Face ID & Passcode.
Click Done.
Click Request in the Request Access to the Onchain Private Key window.
Existing Onchain Signer: approve the Enroll Device Request
In the Prime mobile app navigate to the Tasks tab.
Open the Onchain Signer Device Enrollment activity.
Click Review Request and review the details.
Click Approve & Sign and verify with Face ID to approve the new device.
New Onchain Signer & Device Recovery User: Open the app and approve activity
In the Prime mobile app navigate to the Tasks tab.
Accept the Onchain activity.
Once accepted, the new Onchain Signer’s device will be enrolled and they can sign transactions.
After completing the device enrollment, the device will now hold a valid shard of the Onchain key.
An Administrator or Team Manager is required to remove the Onchain Signer permission for a user.
To remove a Onchain Signer’s access to a wallet, follow these steps:
In Prime, go to Settings.
Choose the Onchain tab and locate the user.
Select the 3 vertical dots and click Remove Onchain Signer Role
Verify with your YubiKey.
Reach consensus to complete the Onchain Signer permission removal action.
