Card By Link Guide
Send secure card capture links via email or SMS
CallBackURL, PCI Booking sends a POST request to that URL when the request reaches one of the statuses listed below. Your endpoint must accept the following payload.
Callback Payload
string
The unique identifier for the Card By Link request.
string
The current status of the request. Possible values:
string
Timestamp of the status change (ISO 8601 format).
No callback is sent when the request is created, when a link expires without being used, or when you cancel a request. To find out whether a request has expired, call Retrieve Request.
What to Do on CardStored
Once you receive a callback with LastNotifiedStatus: CardStored, call Retrieve Request to get the full request details including the CardUri (token URL).
Remember to set the CVV Retention Policy on the token once
CardStored is received.
