---
title: "Get an allowed origin"
method: GET
path: "/merchants/{merchantId}/apiCredentials/{apiCredentialId}/allowedOrigins/{originId}"
tags: ["Allowed origins - merchant level"]
---

# Get an allowed origin

`GET /merchants/{merchantId}/apiCredentials/{apiCredentialId}/allowedOrigins/{originId}`

Returns the [allowed origin](https://docs.adyen.com/development-resources/client-side-authentication#allowed-origins) identified in the path.

To make this request, your API credential must have the following [roles](https://docs.adyen.com/development-resources/api-credentials#api-permissions):
* Management API—API credentials read and write

## Path parameters

- `merchantId` string, required
- `apiCredentialId` string, required
- `originId` string, required

## Response `200`

OK - the request has succeeded.

- AllowedOrigin
  - `_links` Links
    - `self` LinksElement, required
      - `href` string
  - `domain` string, required — Domain of the allowed origin.
  - `id` string — Unique identifier of the allowed origin.

## Other responses

- `204` — No Content - the request has been successfully processed, but there is no additional content.
- `400` — Bad Request - a problem reading or understanding the request.
- `401` — Unauthorized - authentication required.
- `403` — Forbidden - insufficient permissions to process the request.
- `422` — Unprocessable Entity - a request validation error.
- `500` — Internal Server Error - the server could not process the request.

---

[API](https://skmtc.net/adyen/apis/management-api.md) · [All operations](https://skmtc.net/adyen/apis/management-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/adyen/management-api/versions/1089ade06e17/schema)
