public

POST /v1/pay/invoices/{token}/confirm

The payer entered a card — record it and take the money. Unauthenticated.

כל נקודות הקצה מסוג public

כל תיעוד המפתחים

אימות

נקודת קצה זו היא ציבורית. היא אינה דורשת שורת פרטי זיהוי ואינה דורשת ארגון – זהו המידע שאתרי השיווק ומנועי התשובות מבוססי ה-AI שלנו קוראים.

נקודת קצה זו אינה דורשת מזהה ארגון. המפתח שלך כבר מזהה את הארגון שאליו הוא שייך, והתגובה מוגבלת אליו בלבד.

נסה זאת

החלף כל דבר בסוגריים זוויתיים בערכים משלך, ואת מציין מיקום המפתח במפתח מלוח הבקרה שלך.

curl -X POST https://api.zinndigital.com/v1/pay/invoices/{token}/confirm \
  -H "Content-Type: application/json" \
  -d '{ "setup_intent_id": <string> }'

מחובר? קונסולת ה-API בלוח הבקרה שלך מזינה את מזהה הארגון האמיתי שלך ואת המפתח שלך, ומריצה את הבקשה מול ה-API הפיזי כך שתוכל לראות את התגובה בפועל. פתח נקודת קצה זו במסוף ה-API

פרטים

The second half of a two-step that cannot be collapsed into one. A payer with no card on file gets a SetupIntent from /checkout, confirms it in the browser, and lands here; this records the mandate and then charges the order. Charging on the first call instead would put a failed payment on the order — this platform classifies a mandate-less charge as nothing was presented — and the capture webhook refuses to settle one of those, so the money would be taken and never recorded. setup_intent_id is an id and not a credential. The mandate behind it is re-read from the gateway and refused unless the gateway itself says it belongs to this invoice's payer, so holding one pay link cannot attach a stranger's saved card.

פרמטרים

שםסוגנדרשמה זה
token (path)stringכן

גוף הבקשה

שםסוגנדרשמה זה
setup_intent_idstringכן

תשובה

שםסוגנדרשמה זה
statusstringכן
settledbooleanכן
amount_minorintegerכן
currencystringכן
client_tokenstringלאA card intent's client secret, for the browser SDK. It authorises confirming this one intent and nothing else.
redirect_urlstringלאAn approval page to send the payer to (PayPal, a crypto invoice).
action_kindstringלאsetup means no card is on file and client_token is a SetupIntent secret — confirm it, then call /confirm. Anything else is a live charge's own action.
setup_intent_idstringלאThe SetupIntent the card form is mounted against, echoed back for the /confirm call. An id, not a secret: the server re-reads it from the gateway and refuses it unless the…

שגיאות שנקודה קצה זו עשויה להחזיר

404 · 409 · 429