1. Online Payments
  • API Docs Mexico 🇲🇽
  • Online Payments
    • Release Notes
    • Card Payments
      • Request a card token
      • Make a charge or deferred charge
      • Create payment (tokenless)
      • Request deferred options
      • Refund a transaction
      • Authorize payments
      • Preauthorization (tokenless)
      • Void a transaction
      • Reauthorize payments
      • Capture an authorized payment
      • Bin Info V2
      • Bin Info
      • Validate OTP
      • Verify Account
    • One-Click and Scheduled Payments
      • Request a recurring charge token
      • Create a recurring charge
      • Make an One-click payment
      • Update recurring charge card data
      • Cancel a recurring charge
      • Update a recurring charge
      • Add a temporary charge or discount
      • Authorize payments
      • Capture an authorized payment
      • Get recurring charge Info
    • Transfer in
      • Get Bank List
      • Request a Transfer In token
      • Init Transaction
      • Get Status
    • Transfer Out
      • Get Bank List
      • Get Bank List V2
      • Request a Transfer Out token
      • Init Transaction
      • Get Status
      • Balance for Payouts
    • Smartlinks
      • Create a Smartlink
      • Get a Smartlink
      • Delete a smartlink
      • Update a Smartlink
    • Payment Button
      • Create a payment button
    • Analytics
      • Get transactions list v1
      • Get transactions list v2
    • Chargebacks
      • Query chargebacks
      • Request chargeback export
    • Commissions
      • Get Commission Configuration
    • Payment Credentials
      • Create a credential
      • Activate or deactivate
      • Delete credential
      • Regenerate a credential
      • Update credential
      • Advanced search
      • Search credentials
    • Platform Status
      • Get platform status
      • Get gateway status
    • Settlement
      • Query settlement
    • Subscription Transactions
      • Get subscription transactions
  • Card Present Billpocket
    • Get Started
      • Create Account
      • User Token
      • API Keys
    • Webhooks
      • Webhooks — Transfer Funds (v1)
      • Webhooks — Transfer Funds to Your Bank Account
      • Transfer Funds Errors
    • Terminals
      • App Review
      • Splash Screen
    • Card Present Payment Services
      • Cloud Terminal API
        • Collect card payments
        • Print Ticket
        • Cancel Push Notification
        • Get transaction status
        • Collect card payments v2
      • App-to-App
        • Android intents
        • App to App — iOS
        • App to App — Mobile Web
      • Terminal SDK
        • Terminal SDK
        • Android SDK errors
    • Card not Present Billpocket Services
      • 3DS Checkout
        • Create checkout
        • Get checkout details
      • E-commerce Flex
        • Get token
        • Validate token
        • Collect payments
        • Refund
        • Capture an authorized payment
        • Get status
    • Catalogs
      • States
      • Municipalities
      • Tax companies
      • Commercial activities
    • User Settings
      • Create user
    • Accounts
      • Clabe Account Setup
        • Add CLABE account
      • Deposit Accounts
        • Add or update CLABE account
    • Transactions
      • Transaction List
        • Get token
        • Get transaction list
        • Get transaction list v2
        • Get transaction list v3
        • Get transaction list v4
      • Cancel Payments
        • Cancel payments Error Codes
        • Cancel payments
  • API Raw Card Present
    • The Amount Object
    • Error Catalog
    • Key Exchange Process
    • Release Notes
    • Test Data
    • One-time payments
      • Single payment
    • Two-step-payments
      • Authorization and capture
    • Voids & Refunds
      • Refund a transaction
    • Card information
      • Get BIN Info
      • Balance inquiries
      • Bin Info V2
      • Request deferred options
    • Query Transactions
      • Transaction Search
    • Webhooks
      • Webhooks — Introduction
      • Good Practices
      • Webhooks — Card Payments
      • Webhooks — Refunds
      • Check Your Webhooks
  • Kushki One
    • Cloud Services
      • Payment
        • Charge
        • Authorization (Pre-auth)
        • Capture
        • Re-authorization
        • Post-tip
        • Void
        • Refund
        • Abort
      • Search
        • Transaction Search
      • Print
        • Create Print Job
        • Get Print Job Status
    • Local Services
      • Print
        • Create Print Job
        • Get Print Job Status
        • Print Job Webhook (inbound — implemented by your POS)
      • Payment
        • Charge
        • Authorization (Pre-auth)
        • Capture
        • Re-authorization
        • Post-tip
        • Void
        • Refund
        • Abort
      • Search
        • Transaction Search — Online
        • Transaction Search — Local
  • Appian - Submerchant Register
    • Submerchant Validation in Batch
    • Query submerchant status by requestId/submerchantId
    • Submerchant Document Upload
    • Get submerchantIds
    • Get credentials for submerchants
  • Schemas
    • RequestBodies
      • one-and-two-step-payment
    • Card
    • Channel
    • Amount-cash-in
    • ChargebackListResponse
    • StatusComponent
    • SettlementDateRangeRequest
    • SubscriptionTransactionsResponse
    • amount
    • AmountWithTaxes
    • PrintJobRequest
    • networkToken
    • ChargebackItem
    • SettlementTicketRequest
    • SubscriptionTransaction
    • extra_taxes
    • AmountCore
    • CommandText
    • currency
    • ErrorResponse400
    • ErrorResponse
    • SettlementResponse
    • webhooksItem
    • card
    • ExtraTaxes
    • CommandColumns
    • Amount
    • Country
    • ErrorResponse401
    • SettlementRecord
    • card_details
    • ColumnItem
    • extraTaxes
    • ErrorResponse403
    • enc_tlv
    • TransactionResponse
    • CommandDivider
    • Deferred
    • payment_method
    • ErrorResponse500
    • deferred
    • RawResponse
    • CommandFeed
    • Metadata
    • pos_details
    • CardData
    • CommandSpace
    • ContactDetails
    • contact_details
    • sub_merchant
    • AmountWithTip
    • CommandCut
    • documentType
    • Subscription
    • metadata
    • LinkFailure
    • CommandImage
    • orderDetails
    • Language
    • TransactionSearchRequest
    • CommandQR
    • Shipping Address
    • payment_submethod
    • CommandBarcode
    • Billing-Address
    • SubscriptionUpdate
    • PrinterError
    • product
    • SubscriptionAdjustmentRequest
    • PrintJobStatus
    • threeDomainSecure
    • PrintWebhookPayload
    • webhooks
    • headers
    • webhooksChargeback
    • citMit
    • network
    • binInfo
    • messageFields
    • UnexpectedErrorResponse
    • transactionType
    • ExternalReferenceId
    • ExternalSubscriptionId
BienvenidaPerú 🇵🇪México 🇲🇽
Ecuador 🇪🇨Colombia 🇨🇴Chile 🇨🇱
BienvenidaPerú 🇵🇪México 🇲🇽
Ecuador 🇪🇨Colombia 🇨🇴Chile 🇨🇱
  1. Online Payments

Payment Credentials

Payment Credentials lets you manage the API keys (credentials) for your merchant account in Mexico 🇲🇽 — without logging into the Kushki Console. Each credential consists of a public_credential_id (used for client-side tokenization) and a private_credential_id (used for server-side charges).
Master credential required
All endpoints on this page require a master credential (Master-Credential header). Master credentials are available on demand — contact your Kushki account manager to obtain one.

Endpoints at a glance#

OperationMethodEndpoint
Create credentialPOST/payment-credentials/v1/credential
Search credentialsPOST/payment-credentials/v1/credential/search
Advanced searchPOST/payment-credentials/v1/credential/suggestions
Activate / DeactivatePATCH/payment-credentials/v1/credential/status/{credentialId}
Update credentialPATCH/payment-credentials/v1/credential/{credentialId}
Regenerate credentialPATCH/payment-credentials/v1/credential/recover/{public_credential_id}
Delete credentialDELETE/payment-credentials/v1/credential/{credentialId}

Create a credential#

POST /payment-credentials/v1/credential — generates a new public/private key pair for a merchant.
{
  "merchant_id": "20000000103802320000",
  "alias": "Producción México",
  "enable": true,
  "hidden": false
}
Response 201:
{
  "credential_id": "45fe3a3ebe464ebb100f2aa344b6a095",
  "public_credential_id": "4da3fc210f0013bb2abfac6cfbabed65",
  "private_credential_id": "sk_live_abc123...",
  "alias": "Producción México"
}
FieldRequiredDescription
merchant_id✅The merchant account to create the credential for
aliasOptionalHuman-readable label for the credential
enableOptionaltrue to create the credential as active (default: true)
hiddenOptionaltrue to hide the credential from the Kushki Console
metadataOptionalCustom key-value metadata

Search credentials#

POST /payment-credentials/v1/credential/search — paginated list of credentials for a merchant.
{
  "merchantId": "20000000103802320000",
  "limit": 20,
  "offset": 0,
  "filter": {
    "enable": true
  }
}
Response:
{
  "total": 3,
  "data": [...]
}
FieldRequiredDescription
merchantId✅Merchant to search credentials for
limit✅Max results per page
offsetOptionalPagination offset (0-based)
filterOptionalFilter object (e.g. by enable status)

Advanced search#

POST /payment-credentials/v1/credential/suggestions — retrieve credential details by keyword (alias, ID fragment, etc.).
{
  "merchantId": "20000000103802320000",
  "searchTerm": "Producción"
}
Returns { "total": N, "data": [...] }.

Activate or deactivate#

PATCH /payment-credentials/v1/credential/status/{credentialId} — enable or disable a credential.
{
  "action": "DEACTIVATE"
}
action valueEffect
ACTIVATERe-enables the credential
DEACTIVATEDisables the credential — transactions using this key will be rejected

Update a credential#

PATCH /payment-credentials/v1/credential/{credentialId} — update the alias or metadata of a credential.
{
  "merchantId": "20000000103802320000",
  "alias": "Nuevo alias",
  "metadata": {
    "env": "production"
  }
}

Regenerate a credential#

PATCH /payment-credentials/v1/credential/recover/{public_credential_id} — generates a new public and private key pair for the credential. The old keys are replaced automatically across all integrations that are using them.
⚠️ Key rotation: After calling this endpoint, all integrations using the old public_credential_id or private_credential_id will receive new keys automatically. Plan for a brief transition window.
No request body required.

Delete a credential#

DELETE /payment-credentials/v1/credential/{credentialId} — permanently removes a credential. Deleted credentials cannot be recovered.

Authentication#

All Payment Credentials endpoints use a master credential header instead of the standard private key:

Using the API#

🟢 Production
🧪 Sandbox (UAT)
https://api.kushkipagos.com/

Available Endpoints#

Create Credential
Generate a new public/private key pair for a merchant account.
Search Credentials
Paginated list of credentials for a merchant, with optional filters.
Advanced Search
Find credentials by keyword — alias, ID fragment, or other term.
Activate / Deactivate
Enable or disable a credential by its ID.
Update Credential
Update the alias or custom metadata of an existing credential.
Regenerate Credential
Rotate keys — generates new public and private IDs for a credential.
Delete Credential
Permanently remove a credential. This action cannot be undone.

Got a suggestion on this documentation? Contact us.
Modified at 2026-07-11 00:04:53
Previous
Get Commission Configuration
Next
Create a credential
Built with