Versions Compared
Key
- This line was added.
- This line was removed.
- Formatting was changed.
Introduction
Apple Pay enables customers with iOS devices or Macs to pay using payment methods stored in their wallet-app. Merchants need to display an Apple Pay button to eligible customers, who then get presented a payment sheet for easy review of the order and payment. Merchants can configure the look and feel of both buttons and payment sheet, but should adhere to the Apple guidelines.
Availability
Countries | Payment Methods | Currencies |
---|---|---|
| All currencies that are also supported by the PAYONE platform |
UI Text Box | ||
---|---|---|
| ||
Please make sure you only make payment methods available for Apple Pay which are part of your contract with us. |
Clearingtype / Clearingsubtype
clearingtype | wallettype |
---|---|
wlt | APL |
Requests
These Requests and Usecases are applicable:
Request | Comment |
---|---|
Preauthorization | |
Capture | only after preauthorization |
Authorization | |
Debit | only with amount<0 to initiate a refund |
Refund |
Sequence Diagram
Merchant View
draw.io Diagram | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
Prerequisites
Onboarding
Merchants who want to offer Apple Pay must take these preparatory steps:
UI Steps | |||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
Apple Pay on Your Website
How Apple Pay Works
Like other payment buttons, Apple Pay aims to skip the usual checkout steps and presents a complete payment sheet to the customer.
source: Apple
Initiating The Payment Session
Apple Pay on the Web
Apple Pay on the Web uses JS-APIs built into Safari on Mac and mobile. For additional security, all Apple Pay sessions have to be initiated using the Merchant Identification Certificate. Additionally, your domains have to be whitelisted in the Apple Dev Portal.
For info on how to display the buttons and initiating the payment session, please refer to the Apple documentation: https://developer.apple.com/documentation/apple_pay_on_the_web/displaying_apple_pay_buttons and https://developer.apple.com/documentation/apple_pay_on_the_web/apple_pay_js_api/creating_an_apple_pay_session
UI Text Box | ||
---|---|---|
| ||
Head to https://applepaydemo.apple.com/ for a nice overview and some demo code. |
Please make sure to correctly configure your payment request for your merchant account capabilities. For example, a basic request for a merchant who can use Mastercard and Visa in live mode could look like this:
Code Block | ||
---|---|---|
| ||
{ "countryCode": "DE", "currencyCode": "EUR", "merchantCapabilities": [ "supports3DS" // mandatory ], "supportedNetworks": [ "visa", "masterCard" ], "total": { "label": "Demo (Card is not charged)", "type": "final", "amount": "1.99" } } |
Apple Pay In-App
In-App Payments use the Apple PassKit API. For info on how to accept Apple Pay payments in your app, refer to the Apple documentation: https://developer.apple.com/documentation/passkit/apple_pay/offering_apple_pay_in_your_app
As in Apple Pay on the web, you should configure your app to accept only the card schemes that your merchant account supports:
Code Block | ||
---|---|---|
| ||
static let supportedNetworks: [PKPaymentNetwork] = [ .masterCard, .visa ] |
This code snippet from the Apple documentation shows how you can send the resulting payment data to your backend.
Code Block | ||
---|---|---|
| ||
func paymentAuthorizationController(_ controller: PKPaymentAuthorizationController, didAuthorizePayment payment: PKPayment, handler completion: @escaping (PKPaymentAuthorizationResult) -> Void) { // Perform some very basic validation on the provided contact information var errors = [Error]() var status = PKPaymentAuthorizationStatus.success if payment.shippingContact?.postalAddress?.isoCountryCode != "US" { let pickupError = PKPaymentRequest.paymentShippingAddressUnserviceableError(withLocalizedDescription: "Sample App only picks up in the United States") let countryError = PKPaymentRequest.paymentShippingAddressInvalidError(withKey: CNPostalAddressCountryKey, localizedDescription: "Invalid country") errors.append(pickupError) errors.append(countryError) status = .failure } else { // Here you would send the payment token to your server or payment provider to process // Once processed, return an appropriate status in the completion handler (success, failure, etc) // PAYONE suggests sending the data to your backend first and requesting the PAYONE Server API from there } self.paymentStatus = status completion(PKPaymentAuthorizationResult(status: status, errors: errors)) } |
Forwarding the Data to the Payone API
After the customer has completed the payment sheet and authenticated themselves by biometric means (TouchID, FaceID), you'll receive an Apple Pay Object like this:
Code Block | ||||||
---|---|---|---|---|---|---|
| ||||||
{ "token":{ "paymentData":{ "version":"EC_v1", "data":"3+f4oOTwPa6f1UZ6tG...CE=", "signature":"MIAGCSqGSIb3DQ...AAAA==", "header":{ "ephemeralPublicKey":"MFkwEK...Md==", "publicKeyHash":"l0CnXdMv...D1I=", "transactionId":"32b...4f3" } }, "paymentMethod":{ "displayName":"Visa 1234", "network":"Visa", "type":"debit" }, "transactionIdentifier":"32b...4f3" }, "billingContact":{ "addressLines":[ "1 Street", "" ], "administrativeArea":"", "country":"United Kingdom", "countryCode":"GB", "familyName":"Appleseed", "givenName":"John", "locality":"London", "postalCode":"AB12 3CD", "subAdministrativeArea":"", "subLocality":"" }, "shippingContact":{ "addressLines":[ "1 Street", "" ], "administrativeArea":"", "country":"United Kingdom", "countryCode":"GB", "familyName":"Appleseed", "givenName":"John", "locality":"London", "postalCode":"AB12 3CD", "subAdministrativeArea":"", "subLocality":"", "phoneNumber":"01234 567890", "emailAddress":"john.appleseed@apple.com" } } |
Many contents of this object can be mapped to existing Server API parameters.
Section | ||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
However, the actual payment part of the object is encrypted and has to be sent to the PAYONE API in special parameters.
API Requests
Overview of Special Parameters
Apple Pay specific parameter Values | ||||||||||||||||||||||||||||||||||
API Parameter | Required | Comments | ||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
clearingtype | + |
| ||||||||||||||||||||||||||||||||
wallettype | + |
| ||||||||||||||||||||||||||||||||
cardtype | + | can be obtained from the unencrypted part of the payment token
| ||||||||||||||||||||||||||||||||
Apple Pay Token Values | ||||||||||||||||||||||||||||||||||
add_paydata[paymentdata_token_version] | + |
| ||||||||||||||||||||||||||||||||
add_paydata[paymentdata_token_data] | + |
| ||||||||||||||||||||||||||||||||
add_paydata[paymentdata_token_signature] | + |
| ||||||||||||||||||||||||||||||||
add_paydata[paymentdata_token_ephemeral_publickey] | + |
| ||||||||||||||||||||||||||||||||
add_paydata[paymentdata_token_publickey_hash] | + |
| ||||||||||||||||||||||||||||||||
add_paydata[paymentdata_token_transaction_id] | + |
| ||||||||||||||||||||||||||||||||
UI Tabs | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
Apple Pay Specific Error Messages
Error | Description | Suggested Activity |
---|---|---|
2700 | Request amount differs from apple pay token amount. | Make sure to use the same amount as in your Apple Pay payment sheet |
2701 | Request currency differs from apple pay token amount. | Make sure to use the same currency as in your Apple Pay payment sheet |
2702 | Failed to decrypt apple pay token | Check whether your Payment Processing Certificate is valid and uploaded to our merchant backend |
2703 | Certificate service declined request because of validation errors. | |
2704 | Required parameter in apple pay token is missing or empty | Check if all required parameters for the Apple Pay token are set |
Table of Contents | ||||||
---|---|---|---|---|---|---|
|