Skip to main content
GET
Returns the retention policy for this token, including how many times the CVV has been sent to each destination.

CVV Retention Policy Guide

Control how long CVV data is retained and who can use it
These cvv/Restriction endpoints manage what the documentation calls the CVV retention policy and what the PCI Booking portal calls CVV Store Rules. All three names refer to the same feature.

Error Responses

Parameters

Path Parameters

string
required
The token ID as returned by one of the tokenization methods.

Authentication

API key only. This endpoint does not accept access tokens or session tokens.
string
required
Your API key prefixed with APIKEY. Example: APIKEY your-api-key. The x-pcibooking-api-key header is also accepted. See the Authentication guide.

Headers

string
default:"application/json"
Set to application/xml to receive the response in XML format.

Response

The response mirrors the structure of the Set CVV Retention Policy request body, with an additional Usage field per destination showing how many times the CVV has already been sent there.