Skip to main content
GET

Card Display Guide

Display stored card details to authorized users
This is not an API call you make from your server: you build the URL with the query parameters below and use it as the src of an iframe element on your page, or redirect the customer’s browser to it. The browser then loads the hosted Card Display Form directly from PCI Booking. For the element classes you can target with custom CSS, see the form structure reference.

Error Responses

This URL is loaded by a browser, so an error is shown inside the iframe, not returned to your server. When a browser loads the URL, the error body is XML (Content-Type: text/xml). See Response Format. An unsupported language does not cause an error: the form is shown in English. An unknown css name does not cause an error: your default stylesheet is used. If the CVV is no longer available under your CVV retention policy, the form is shown without the CVV.

Parameters

Authentication

Access token or session token. This endpoint does not accept the API key. Generate a token with your API key and pass it as a query parameter. Send one of the two.
string
Generated on your side. Single use, and valid for up to 72 hours. How to generate.
string
Returned by an API call. Valid for 5 minutes, and can be used more than once within that time. How to generate.

Path Parameters

string
required
The token ID as returned by one of the tokenization methods.

Display Options

string
The form’s language in ISO 639-1 (2-letter) format. See here. If you leave it out, PCI Booking uses the language of the viewer’s browser. If the language is not supported, English is displayed. To add languages, contact our support team.
string
The CSS resource name. See our guide on managing stylesheets. If omitted, PCI Booking uses the default CSS.
boolean
Whether to display the card number in blocks of digits or as a single string of numbers.
boolean
default:"false"
Set to true to leave out PCI Booking’s base stylesheet, so that the form is styled only by your own stylesheet (css).

Response

200 - The browser renders the hosted Card Display Form.