Skip to content Skip to footer

Effective Date: 01 July 2025

This API Usage Policy outlines the rules and responsibilities associated with accessing and using the APIs provided by the Company (“we,” “our,” or “us”). Our APIs are designed to support secure and seamless pay-in (collection) and payout (payment) operations for our registered clients.

By integrating or using any of our APIs, you agree to comply with this policy, our Terms of Use, Privacy Policy, and any service agreements signed with the Company.

  1. Authorization and Access
    API Credentials

  • Upon approval, each client will receive unique API credentials (keys, tokens, etc.) for secure access.

  • Clients must maintain the confidentiality of their credentials and must not share or expose them to unauthorized individuals.

  • Any unauthorized use or compromise must be reported immediately to our support team.

Authorized Use

  • APIs may only be used for approved purposes as defined in your agreement with the Company.

  • The use of APIs must always be in compliance with applicable laws, including data protection, financial, and cybersecurity regulations.

  • APIs must not be used for fraudulent, illegal, or abusive activities under any circumstances.

  1. Permitted API Activities
    Our APIs are designed for business use cases including:

  • Pay-In (Collection) Services: Accepting payments from customers, agents, or partners.

  • Payout (Disbursement) Services: Processing business-related payments such as salary transfers, vendor disbursements, cashback, incentives, or wallet redemptions.

  • Enterprise Integration: Seamless integration with SAP, ERP, or custom enterprise systems to automate financial processes.

  1. Prohibited API Activities
    Clients may not:

  • Reverse engineer, tamper with, or alter the API’s code or behavior.

  • Use APIs for unauthorized or non-compliant financial transactions, including high-risk or banned sectors.

  • Exceed pre-defined usage thresholds or limits without obtaining prior permission.

  • Share API keys with third parties, resell access, or sublicense without written approval.

  • Engage in any activity that compromises API security, platform stability, or data integrity.

  1. Data Security and Privacy

  • All communication between client systems and the API must be conducted over secure HTTPS protocols.

  • Clients are responsible for implementing security best practices including token encryption, IP whitelisting, and role-based access.

  • Any personal or financial data accessed via APIs must not be stored, distributed, or repurposed without proper user consent and legal justification.

  • Clients must ensure full compliance with the Information Technology Act, 2000, RBI Guidelines, and applicable data protection laws in India.

  1. Monitoring and Auditing

  • The Company reserves the right to monitor, log, and audit API usage in real-time to detect suspicious, unusual, or unauthorized activities.

  • We may conduct periodic compliance checks or request documentation to verify lawful use.

  • Any violations may result in temporary suspension or permanent revocation of access.

  1. Rate Limits and Throttling

  • All API plans are subject to fair usage and rate limiting policies to ensure system performance.

  • If your API calls exceed defined thresholds, automated throttling may apply.

  • Repeated violations may lead to temporary access blocks or review of your service tier.

  1. Liability and Indemnification

  • The Company shall not be held responsible for damages, financial loss, or service interruptions resulting from incorrect integration, misuse, or third-party API abuse.

  • Clients agree to indemnify and hold harmless the Company from any claims, damages, losses, or liabilities arising from their use or misuse of the APIs.

  1. Suspension or Termination of Access
    We reserve the right to suspend or permanently terminate API access under the following circumstances:

  • Violation of this API Usage Policy

  • Use of APIs for illegal or harmful purposes

  • Breach of contractual obligations or security guidelines

  • Failure to cooperate during an investigation or audit

Prior notice may be provided when appropriate, except in cases of critical security concerns.

  1. Updates to the API Usage Policy
    This policy may be updated periodically to reflect:

  • Changes in regulatory standards or industry practices

  • Expansion or modifications in API services

  • Improvements in our security infrastructure

All updates will be communicated via email or posted on our website with the revised Effective Date. Continued use of our APIs after changes signifies your acceptance of the updated terms.

  1. Contact Us
    For any questions, clarifications, or support related to this API Usage Policy, please contact:

Level 5, ITPL Main Rd, Devasandra Industrial
Bengaluru, Karnataka 560048
Email: cbdo@dotpe.co
Phone: +44 7563 009191