Loading…
Velaxe
PayStream — Payments, Billing, Reconciliation & Finance Operations | Velaxe

PayStream

Bridge v2 External Clients — Integration

Create governed external PayStream clients with HMAC-signed requests, scoped operations, replay protection, rate limits, IP policy, expiry, and secret rotation.

Overview

Create governed external PayStream clients with HMAC-signed requests, scoped operations, replay protection, rate limits, IP policy, expiry, and secret rotation.

Capabilities

  • Bridge v2 endpoint per client and operation

  • HMAC-SHA256 canonical request signing

  • Timestamp tolerance and request-ID replay protection

  • Allowed-operation, scope, IP, rate-limit, and expiry controls

  • Current/previous secret rotation and Bridge request logging

Setup Steps (4)

  1. 1

    Step 1

    Create or mint a Bridge client in PayStream integration administration.

  2. 2

    Step 2

    Choose allowed operations, scopes, network policy, rate limit, and expiry.

  3. 3

    Step 3

    Store the issued secret securely on the client side.

  4. 4

    Step 4

    Sign canonical Bridge v2 requests and call the assigned client/operation endpoint.

Limitations

  • Bridge authorization remains operation-scoped and resource-scoped after signature verification.

FAQs

What protects Bridge requests from replay?

PayStream validates timestamps and request IDs against replay state before operation execution.

Can Bridge secrets be rotated?

Yes. Current and previous secret records support controlled rotation while client metadata remains stable.

Pricing

Core

USD 365.17 / annual

Team

USD 1,095.67 / annual

Business

USD 2,921.90 / annual

Enterprise

USD 5,843.88 / annual