---
title: "Request OTP before saving a user's card"
method: POST
path: "/v1/checkout/user-card/auth"
tags: ["Charge"]
---

# Request OTP before saving a user's card

`POST /v1/checkout/user-card/auth`

Use this endpoint to request an OTP to be sent to be sent to the users phone number to authenticate the user before saving the card. This endpoint is called after payment is successful, and the user requested to save their card for later.

## Request body

- CheckoutAuthenticateUserRequest
  - `orderReference` string, required — order reference
  - `phoneNumber` string, required — customer's phone number

## Response `200`

OK - your request was successful.

- object
  - `code` string, required — Response Code
  - `description` string, required — Response description
  - `data` CheckoutDataResponse, required
    - `success` boolean, required — true is the transaction was successful
    - `message` string, required — details response message

## Other responses

- `400` — The request body sent by merchant did not pass the validation checks
- `401` — The access_token provided to access the resource is missing or invalid.
- `403` — The client does not have the permissions to access this resource
- `404` — The record that the client is trying to access does not exist.
- `429` — The client has maxed out the number of calls within a time period on this resource.
- `500` — Downstream system error.

---

[API](https://skmtc.net/nomba/apis/vendor-api.md) · [All operations](https://skmtc.net/nomba/apis/vendor-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/nomba/vendor-api/versions/41727ac9be5f/schema)
