v1
latestOpenAPI 3.1.02026-08-047829.9 KBRequest a payment credential
Request a single-use virtual card to execute a specific purchase against an active mandate. Allowance automatically validates the request against the mandate rules — amount, merchant, merchant category, and time period. No human approval is needed at this step; the human already approved the mandate.
If validation passes, a virtual card (PAN, expiry, CVV) is returned. The agent uses these details at merchant checkout like a normal card number. The card is single-use, amount-capped, and short-lived — safety comes from these constraints, not from hiding credentials.
For cadence: "once" mandates, the mandate automatically moves to exhausted status after the first virtual card is issued.
Path parameters
Headers
Client-generated unique key. Same key returns the same response without re-executing the operation. Always set this on credential requests.
Request body
Response
Credential request processed. Check validation.passed for the outcome.