Create a session
Create a session
Authorization
apiKey Merchant API key. Publishable keys (pk_test_* / pk_live_) are safe for browser/frontend use and carry a limited scope set (sessions, payment_instruments, customers, orders writes; products, product_prices, payment_links reads). Secret keys (sk_test_ / sk_live_*) grant full admin access and must only be used server-side.
In: header
Request Body
application/json
TypeScript Definitions
Use the request body type in TypeScript.
Response Body
application/json
application/json
application/json
application/json
curl -X POST "https://loading/v1/api/sessions/" \ -H "Content-Type: application/json" \ -d '{ "nonce": "random-nonce-string-from-client" }'{
"success": true,
"timestamp": "2026-02-06T12:00:00.000Z",
"message": "Session created",
"data": {
"id": "sess_abc123",
"nonce": "random-nonce-string",
"expires_at": "2026-02-06T13:00:00.000Z",
"created_at": "2026-02-06T12:00:00.000Z"
}
}{
"success": false,
"timestamp": "2019-08-24T14:15:22Z",
"error": {
"code": "string",
"message": "string",
"details": null
}
}{
"success": false,
"timestamp": "2019-08-24T14:15:22Z",
"error": {
"code": "string",
"message": "string",
"details": null
}
}{
"success": false,
"timestamp": "2019-08-24T14:15:22Z",
"error": {
"code": "string",
"message": "string",
"details": null
}
}Update a payment link
Update editable fields on a payment link (nickname, state, expiration, etc.). Scoped to the authenticated company. Passing `items` REPLACES the link's product items wholesale (FIXED links only): every `price_id` must belong to the caller's company, `amount_details.total_amount` is recomputed from the new prices, and old items are deleted. Past payments are unaffected — only future charges use the new prices.
Create a refund (deprecated alias)
**Deprecated** — use `/v1/api/payment` instead. This path is kept for SDK back-compat and will be removed in a future major release. Both paths share the same handlers; only the URL differs. Create a reversal (refund) for a succeeded payment.