---
title: "Request OTP to validate a user before fetching saved cards"
method: POST
path: "/v1/checkout/user-card/saved-card/auth"
tags: ["Charge"]
---

# Request OTP to validate a user before fetching saved cards

`POST /v1/checkout/user-card/saved-card/auth`

Use this endpoint to request an OTP to be sent to a user's phone number to authenticate before retrieving the saved cards mapped to the user's email. Use this endpoint when the Order details endpoint indicates the user already has saved cards.

## Request body

- CheckoutDataRequest
  - `orderReference` string, required — order reference

## Response `200`

OK - your request was successful.

- object
  - `code` string, required — Response Code
  - `description` string, required — Response description
  - `data` CheckoutDataResponse, required
    - `success` boolean, required — true is the transaction was successful
    - `message` string, required — details response message

## Other responses

- `400` — The request body sent by merchant did not pass the validation checks
- `401` — The access_token provided to access the resource is missing or invalid.
- `403` — The client does not have the permissions to access this resource
- `404` — The record that the client is trying to access does not exist.
- `429` — The client has maxed out the number of calls within a time period on this resource.
- `500` — Downstream system error.

---

[API](https://skmtc.net/nomba/apis/vendor-api.md) · [All operations](https://skmtc.net/nomba/apis/vendor-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/nomba/vendor-api/revisions/41727ac9be5f/schema)
