Skip to main content
When PCI Booking makes an outbound call on your behalf - processing a payment through a PSP, relaying a request to a third party, or forwarding data to your own API - the request originates from PCI Booking’s infrastructure. Some third parties require these addresses to be whitelisted before they’ll accept traffic; without it, you’ll typically see a 401, 403, or a generic “not allowed from there” style rejection at the third party.

Current IP Addresses

These addresses are fixed. They apply to both sandbox and live accounts, because both types of account run in PCI Booking’s production environment.
The addresses can change in the future. If a third party starts rejecting requests from PCI Booking, check this page first for the current list.

When You Need This