POST
Create card token
Use this endpoint to create a card token in a PCI DSS compliant integration. The synchronous response carries the processing status and any required next action; receive the final tokenization result through
notifyUrl.Request
appIdStore ID generated when the merchant is onboarded with Onerway.
Example:
replace_with_app_idcardInfo{ holderName, cardNumber, ... }Card payment information collected directly by the merchant backend in a PCI DSS compliant environment. Do not store sensitive authentication data after authorization.
emailCustomer email address, used for transaction confirmation and dispute handling.
Example:
customer@example.commerchantCustIdUnique customer identifier in the merchant system. The saved card token is associated with this customer.
Example:
cust_demo_tokenization_202606150001merchantNoMerchant number assigned by Onerway. See Setup for how to obtain it.
Example:
replace_with_merchant_nonotifyUrlHTTPS endpoint that receives the final card-token creation result callback, including the card token and masked card details. The callback contract is the Saved payment method result webhook.
Example:
https://developers.onerway.com/example-card-token-notifyreturnUrlHTTPS browser return URL used when a card-binding 3DS challenge requires redirect handling.
Example:
https://developers.onerway.com/example-card-token-returnsignRequest signature string. See Request signing for how to generate it.
transactionIpCardholder transaction IP collected by the merchant. Submit the end-user IP, not the merchant server IP.
Example:
192.0.2.10curl -X POST 'https://sandbox-acq.onerway.com/v1/txn/bindCard' \
-H 'Content-Type: application/json' \
--data-raw '{
"appId": "replace_with_app_id",
"cardInfo": "{\"holderName\":\"replace_with_cardholder_name\",\"cardNumber\":\"{{CARD-NUMBER}}\",\"month\":\"12\",\"year\":\"2030\",\"cvv\":\"{{CVV}}\"}",
"country": "US",
"email": "customer@example.com",
"merchantCustId": "cust_demo_tokenization_202606150001",
"merchantNo": "replace_with_merchant_no",
"notifyUrl": "https://developers.onerway.com/example-card-token-notify",
"returnUrl": "https://developers.onerway.com/example-card-token-return",
"sign": "{{SIGN}}",
"transactionIp": "192.0.2.10"
}'Response
respCodeResponse code;
20000 means the request was processed successfully, other values are error codes. See Response codes.respMsgHuman-readable message for the response code.
data{ transactionId, tokenId, ... }Business data object carrying synchronous processing status and next-action fields for this tokenization request.
{
"respCode": "20000",
"respMsg": "Success",
"data": {
"transactionId": "txn_demo_tokenization_202606150001",
"tokenId": "example_token_id",
"status": "S",
"redirectUrl": null,
"sign": "{{SIGN}}"
}
}No error responses are documented for this endpoint.