Wise is a PCI DSS compliant provider and stores all card data securely. The scope for PCI compliance depends on your use case and will impact how you integrate. For all sensitive card details endpoints, follow the detailed guide.
Key capabilities:
- Access sensitive card data (PAN, CVV, PIN) via encrypted JWE payloads
Related operations:
- For card management (list, status, permissions), see the Cards API
- For ordering new cards, see the Card Orders API
- For transaction history, see the Card Transaction API
Fetches Wise's RSA public key required for encrypting sensitive card data requests.
This key is used in the sensitive card details flow to create JWE (JSON Web Encryption) payloads.
Security
UserToken
Optional UUID for correlating requests across systems. If provided, Wise echoes it back in the response. Maximum 36 characters. Learn more.
Example:f47ac10b-58cc-4372-a567-0e02b2c3d479
- Production Environmenthttps://twcard.wise.com/twcard-data/v1/clientSideEncryption/fetchEncryptingKey
- Sandbox Environmenthttps://twcard.wise-sandbox.com/twcard-data/v1/clientSideEncryption/fetchEncryptingKey
curl -i -X GET \
https://twcard.wise.com/twcard-data/v1/clientSideEncryption/fetchEncryptingKey \
-H 'Authorization: Bearer <YOUR_JWT_HERE>' \
-H 'X-External-Correlation-Id: f47ac10b-58cc-4372-a567-0e02b2c3d479'RSA encryption key retrieved successfully.
Headers
Echoed back when X-External-Correlation-Id was included in the request. Learn more.
Example:"f47ac10b-58cc-4372-a567-0e02b2c3d479"
Response
{ "version": 1, "key": "<encryption key>" }