Developers
API & integration portal
REST-shaped checkout, payment links and webhook events for institutions, software houses and merchants — sandbox documentation today, production keys only after licensed rails. The control panel you will operate against is already built.
Why this page exists before production keys
Global payment platforms win engineering conversations with clear base URLs, auth models, webhook events and plugin surfaces — long before a card is charged. This portal is a sandbox preview on purpose: enough structure for a bank or software house to diligence the shape, zero pretence of live card processing. The merchant dashboard, API keys, Shufti Pro KYC hooks and dispute console already exist as software inside the control panel.
1. Security and compliance
All future API endpoints will run over TLS 1.3. Card data will use non-reversible tokenisation. Stratos targets PCI-DSS aligned controls and 3DS2 authentication at token ingestion — only after licensed partners and production rails are authorised.
2. Base production endpoints
- This desk: https://stratosfin.io
- Sandbox checkout and multi-currency payment-link software
3. Integration surface
- Authenticated JSON checkout session creation (sandbox shape)
- Payment links (USD, EUR, GBP, AED, SAR) — live in the merchant console
- Webhook listeners for settlement, hold and chargeback.flagged events
- White-label plugin roadmap: WooCommerce, Shopify App Bridge, Magento
- Hosted KYC via Shufti Pro (document + face), posted back to the control panel
4. Sample request shape (illustrative only)
POST /v1/checkout/sessions
Authorization: Bearer st_test_••••••••
Content-Type: application/json
{
"merchant_id": "MCH_SANDBOX",
"amount": 25.00,
"currency": "USD",
"payment_method": { "type": "card_token_3ds2" },
"redirect_urls": {
"success_url": "https://stratosfin.io/success",
"cancel_url": "https://stratosfin.io/cancel"
}
}Keys, merchant IDs and response codes shown in any draft materials are fictional placeholders for engineering discussion — never production secrets.
Live in the control panel
- Merchant, staff and customer dashboards
- API key management (sandbox)
- Shufti Pro hosted KYC (document + face)
- Payment links, settlements views, disputes
- Official iOS / Android app on the same ledger
After licensing
- Production acquiring keys and scheme settlement
- Public SDK download room
- App Store and Play listings
Engineering desk
Website, control panel and apps are led by founder, director, CTO and lead developer Mughees Ahmad, with developer Shehroz Virk (senior JavaScript engineer, also Chief Compliance Officer). Contact support@stratosfin.io.
- Mughees AhmadFounder, Director, Chief Technology Officer & Lead Developer
- Shehroz VirkChief Compliance Officer & Developer
Security first
Read our Security & AML/KYC statement and Disclaimer before integrating any partner systems. Live acquiring requires regulatory clearance.