View as Markdown

llms.txt

The API reference isn't available right now

This instance couldn't load its API specification. The reference returns as soon as the specification is readable again.

Back to the API reference

No such operation

This instance documents no operation under that identifier. It may have been renamed, or it may belong to a feature this installation hasn't enabled.

Back to the API reference

This reference may be out of date

This instance couldn't reach its API specification on the last attempt, so this page shows the copy fetched before that. Anything added or changed since then is missing here, and the reference updates itself as soon as the specification is readable again. Last fetched 2026-10-01 06:25 UTC.

API reference ScreeningProviderMetadata

Dry-run validates a screening provider configuration payload.

POST /api/screening-providers/{providerId}/validate-config deprecated

Requires: Transactions.ScreeningProviderConfiguration.ViewSchema, merchant scope.

Writes no merchant document.

Example request

Every block below sends the same request. Replace {{BASE_URL}} with the address of the API you are calling and {{API_KEY}} with your own key.

The request body is a ScreeningProviderProfileDto. See the Request body section below for its fields.

Code sample language

cURL
curl -X POST "{{BASE_URL}}/api/screening-providers/{providerId}/validate-config" \
  -H "api-key: {{API_KEY}}" \
  -H "Content-Type: application/json" \
  -d '{
  "configuration": {}
}'

PowerShell
$headers = @{
    'api-key' = '{{API_KEY}}'
}

$body = @'
{
  "configuration": {}
}
'@

$response = Invoke-RestMethod -Method POST -Uri '{{BASE_URL}}/api/screening-providers/{providerId}/validate-config' `
    -Headers $headers -ContentType 'application/json' -Body $body

npm install @winkpg/winkpg-api

TypeScript (SDK)
import { Configuration, ScreeningProviderMetadataApi } from '@winkpg/winkpg-api';

const api = new ScreeningProviderMetadataApi(new Configuration({
  basePath: '{{BASE_URL}}',
  apiKey: '{{API_KEY}}',
}));

const { data } = await api.screeningProviderMetadataValidateConfig("PROVIDER_ID", {
  "configuration": {}
});

TypeScript (raw HTTP)
const response = await fetch('{{BASE_URL}}/api/screening-providers/{providerId}/validate-config', {
  method: 'POST',
  headers: {
    "api-key": "{{API_KEY}}",
    "Content-Type": "application/json",
  },
  body: JSON.stringify({
    "configuration": {}
  }),
});

const data = await response.json();

dotnet add package WinkPg.Api.Client

C# (SDK)
using WinkPg.Api.Client.Api;
using WinkPg.Api.Client.Client;
using System.Text.Json;

var config = new Configuration { BasePath = "{{BASE_URL}}" };
config.AddApiKey("api-key", "{{API_KEY}}");

var api = new ScreeningProviderMetadataApi(config);
var body = JsonSerializer.Deserialize<ScreeningProviderProfileDto>("""
    {
      "configuration": {}
    }
    """);

var result = await api.ScreeningProviderMetadataValidateConfigAsync("PROVIDER_ID", body);

C# (raw HTTP)
using System.Text;

using var http = new HttpClient { BaseAddress = new Uri("{{BASE_URL}}") };

var request = new HttpRequestMessage(new HttpMethod("POST"), "/api/screening-providers/{providerId}/validate-config");
request.Headers.Add("api-key", "{{API_KEY}}");

request.Content = new StringContent("""
    {
      "configuration": {}
    }
    """, Encoding.UTF8, "application/json");

var response = await http.SendAsync(request);
response.EnsureSuccessStatusCode();
var json = await response.Content.ReadAsStringAsync();

pip install winkpg-api

Python (SDK)
import winkpg_api

configuration = winkpg_api.Configuration(host="{{BASE_URL}}")
configuration.api_key["ApiKey"] = "{{API_KEY}}"

with winkpg_api.ApiClient(configuration) as client:
    api = winkpg_api.ScreeningProviderMetadataApi(client)
    body = winkpg_api.ScreeningProviderProfileDto.from_dict({
      "configuration": {}
    })
    result = api.screening_provider_metadata_validate_config("PROVIDER_ID", body)

pip install requests

Python (raw HTTP)
import requests

headers = {
    "api-key": "{{API_KEY}}",
    "Content-Type": "application/json",
}

body = {
  "configuration": {}
}

response = requests.request(
    "POST",
    "{{BASE_URL}}/api/screening-providers/{providerId}/validate-config",
    headers=headers,
    json=body,
)
response.raise_for_status()
data = response.json()

Parameters

Name In Type Description
providerId required path string The provider identifier.
suppressNulls required query boolean If true, omit properties with null values.

Request body

application/json , required

Field Type Description
screeningProviderProfileId required string (uuid) Unique identifier of this screening provider profile. Server-assigned on add; any value supplied on input to the sub-resource surface is ignored.
merchantId required string (uuid) The owning merchant. Stamped by the server; a value supplied on input is overwritten.
isActive required boolean Whether this profile is consulted. Only an active profile participates in the exclusivity rule against the merchant's active processor profiles.
configuration required all of MerchantScreeningProviderConfigurationDto The provider identity and its per-merchant field values.
reviewAction required all of ScreeningReviewAction What the platform does when this provider asks for a human decision rather than answering accept or decline. Omit (or send `null`) for the default, `Audit`: record the verdict on the transaction and continue. nullable
onFailureBehavior required all of ScreeningFailureBehavior What the platform does when this provider cannot give a decision at all: a timeout, an error, an Unavailable verdict, or a skipped call because the provider's circuit breaker is open. Omit (or send `null`) for the default, `ContinueWithAudit`: record the non-decision on the transaction and continue to authorization. nullable
timeoutMs required integer (int32) How long one call to this provider may take before it is abandoned and recorded as a timeout, in milliseconds. Accepted range is `MinimumMs` to `MaximumMs`; omit for the default, `DefaultMs`. nullablemin 250max 30000
reviewHoldDeadlineMinutes required integer (int32) How long a transaction held for manual review may wait for a reviewer's disposition, in minutes. Accepted range is `MinimumDeadlineMinutes` to `MaximumDeadlineMinutes`; omit for the default, `DefaultDeadlineMinutes`. Conditional: When ReviewAction != HoldForReview. nullablemin 15max 43200
reviewHoldExpiryAction required all of ReviewHoldExpiryAction What happens to a held transaction whose deadline elapsed with no reviewer disposition. Omit (or send `null`) for the default, `Decline`: an unanswered review is not an approval. Conditional: When ReviewAction != HoldForReview. nullable

This request body has no documented fields.

Responses

200 OK

Body: ProcessorConfigValidationResultDto Each item has these fields.

Field Type Description
isValid required boolean True when every applicable field passed validation (no `results` entry has `ok` == false).
results required array of ProcessorFieldValidationResultDto One entry per field that was evaluated for the requested payment-type selection. Fields outside the selection are not evaluated and are omitted. nullable

This response has no documented body fields.

403 Forbidden

Body: RemoteServiceErrorResponse Each item has these fields.

Field Type Description
error required RemoteServiceErrorInfo

This response has no documented body fields.

401 Unauthorized

Body: RemoteServiceErrorResponse Each item has these fields.

Field Type Description
error required RemoteServiceErrorInfo

This response has no documented body fields.

400 Bad Request

Body: RemoteServiceErrorResponse Each item has these fields.

Field Type Description
error required RemoteServiceErrorInfo

This response has no documented body fields.

404 Not Found

Body: RemoteServiceErrorResponse Each item has these fields.

Field Type Description
error required RemoteServiceErrorInfo

This response has no documented body fields.

501 Not Implemented

Body: RemoteServiceErrorResponse Each item has these fields.

Field Type Description
error required RemoteServiceErrorInfo

This response has no documented body fields.

500 Internal Server Error

Body: RemoteServiceErrorResponse Each item has these fields.

Field Type Description
error required RemoteServiceErrorInfo

This response has no documented body fields.

default The request failed. The body carries the standard error envelope: a machine-readable `error.code`, a human-readable `error.message`, and `error.validationErrors` when the failure was a validation rejection. See the error-code reference in this document's description for the values `error.code` can take.

Body: RemoteServiceErrorResponse Each item has these fields.

Field Type Description
error required RemoteServiceErrorInfo

This response has no documented body fields.

429 The request was refused because a rate limit was exceeded. Wait at least the interval `Retry-After` names before retrying, then back off. Limits are tuned per deployment, so read the allowance from the response headers rather than assuming a fixed ceiling.

Body: RateLimitProblemDetails Each item has these fields.

Field Type Description
type required string The problem type identifier. Always the same value: the failure is the status code itself, so there is no sub-type for a caller to branch on. nullable
title required string A short, human-readable summary of the problem type. nullable
status required integer (int32) The HTTP status code, repeated in the body as the problem-details format defines.
detail required string A human-readable explanation of this occurrence of the problem. nullable
retryAfterSeconds required integer (int32) How long to wait before retrying, in whole seconds, carrying the same figure as the `Retry-After` header. Always at least one: a value of zero would invite an immediate retry that is certain to be rejected again.

This response has no documented body fields.

Errors

A failed request returns the platform error envelope. The error reference lists every value error.code can carry and shows the four response shapes.

Codes declared by

Authentication

    Reconnecting to the server

    Could not reconnect

    This session has ended

    Attempt 1

    Your work on this page is still here. Retrying keeps it; reloading starts the page again.

    The server no longer holds this page's state, so it has to be loaded again.