Approve a debit

Blinc asks the issuing institution to approve a customer debit after the institution confirms the customer, device provisioning, payment, and account details. Blinc does not retry a timed-out Debit Authorization. Blinc sends a Reversal with the original debit references when the debit must be undone. Read how to approve a debit.

Recent Requests
Log in to see full request history
TimeStatusUser Agent
Retrieving recent requests…
LoadingLoading…
Body Params

Signed and encrypted request body. The JSON body contains the Base64 data envelope. Content-Type must be application/json, and the signature is supplied in the x-signature header.

The complete HTTP body. The data value is the Base64-encoded encrypted envelope. The institutional ECDSA signature is supplied in the x-signature header, not in the JSON body.

string
required

Base64-encoded bytes joined in this order: the one-use P-256 public key (65 bytes), the 12-byte nonce, the AES-256-GCM ciphertext, and the 16-byte authentication tag. Derive the AES key with ECDH and HKDF-SHA256 using the info value blinc-e2ee.

Headers
string
required

UTC time when this protected HTTP delivery was created. Use yyyy-MM-dd'T'HH:mm:ss.fff'Z' and reject stale or future deliveries outside the agreed clock-skew window.

string
required

Base64 of the 64-byte IEEE P1363 P-256 ECDSA signature over the exact compact plaintext UTF-8 bytes.

Responses

400

Malformed outer JSON. Standard validation response.

Language
LoadingLoading…
Response
Choose an example:
application/json