#!/usr/bin/env bash
# Retrieve your merchant-level hosted-checkout configuration: allowed
# redirect domains, default branding profile, and redirect-secret status.
set -euo pipefail
API_BASE="${RADIUMONE_API_BASE:-https://api-sandbox.radiumone.io/gateway}"
: "${RADIUMONE_ACCESS_TOKEN:?set RADIUMONE_ACCESS_TOKEN to a Bearer access token (secret key)}"
curl -sS "$API_BASE/v1/merchant/config" \
-H "Authorization: Bearer $RADIUMONE_ACCESS_TOKEN"#!/usr/bin/env python3
"""Retrieve your merchant-level hosted-checkout configuration."""
import json
import os
import requests
API_BASE = os.environ.get("RADIUMONE_API_BASE", "https://api-sandbox.radiumone.io/gateway")
def get_merchant_config() -> dict:
resp = requests.get(
f"{API_BASE}/v1/merchant/config",
headers={"Authorization": f"Bearer {os.environ.get('RADIUMONE_ACCESS_TOKEN', '')}"},
timeout=30,
)
payload = resp.json()
if not resp.ok:
code = payload.get("type") or payload.get("code")
raise RuntimeError(f"merchant/config failed: {code} ({resp.status_code})")
return payload
if __name__ == "__main__":
print(json.dumps(get_merchant_config(), indent=2))
{
"data": {
"allowed_domains": [
"<string>"
],
"has_redirect_secret": true,
"merchant_id": "<string>",
"merchant_name": "<string>",
"branding_profile": {
"accent_color": "<string>",
"background_color": "<string>",
"border_radius": "<string>",
"button_color": "<string>",
"button_text_color": "<string>",
"color_scheme": "<string>",
"created_at": "<string>",
"display_name": "<string>",
"focus_color": "<string>",
"font_family": "<string>",
"id": "<string>",
"is_default": true,
"merchant_id": "<string>",
"name": "<string>",
"primary_color": "<string>",
"updated_at": "<string>",
"button_text": "<string>",
"error_color": "<string>",
"logo_url": "<string>",
"success_color": "<string>",
"warning_color": "<string>"
},
"default_branding_profile_id": "<string>",
"redirect_secret_rotated_at": "<string>"
},
"message": "<string>",
"request_id": "<string>",
"status": "ok"
}{
"detail": "Missing or invalid Bearer token.",
"status": 401,
"title": "Authentication Required",
"type": "urn:radiumone:gateway:authentication-required"
}{
"detail": "Insufficient permissions for this operation.",
"status": 403,
"title": "Permission Denied",
"type": "urn:radiumone:gateway:permission-denied"
}{
"detail": "The requested resource does not exist.",
"status": 404,
"title": "Not Found",
"type": "urn:radiumone:gateway:not-found"
}{
"detail": "An unexpected error occurred.",
"status": 500,
"title": "Internal Server Error",
"type": "urn:radiumone:gateway:internal-server-error"
}Get merchant configuration - Payments API
Retrieve your merchant account’s configuration, including hosted checkout settings. Secrets are never returned in plaintext.
#!/usr/bin/env bash
# Retrieve your merchant-level hosted-checkout configuration: allowed
# redirect domains, default branding profile, and redirect-secret status.
set -euo pipefail
API_BASE="${RADIUMONE_API_BASE:-https://api-sandbox.radiumone.io/gateway}"
: "${RADIUMONE_ACCESS_TOKEN:?set RADIUMONE_ACCESS_TOKEN to a Bearer access token (secret key)}"
curl -sS "$API_BASE/v1/merchant/config" \
-H "Authorization: Bearer $RADIUMONE_ACCESS_TOKEN"#!/usr/bin/env python3
"""Retrieve your merchant-level hosted-checkout configuration."""
import json
import os
import requests
API_BASE = os.environ.get("RADIUMONE_API_BASE", "https://api-sandbox.radiumone.io/gateway")
def get_merchant_config() -> dict:
resp = requests.get(
f"{API_BASE}/v1/merchant/config",
headers={"Authorization": f"Bearer {os.environ.get('RADIUMONE_ACCESS_TOKEN', '')}"},
timeout=30,
)
payload = resp.json()
if not resp.ok:
code = payload.get("type") or payload.get("code")
raise RuntimeError(f"merchant/config failed: {code} ({resp.status_code})")
return payload
if __name__ == "__main__":
print(json.dumps(get_merchant_config(), indent=2))
{
"data": {
"allowed_domains": [
"<string>"
],
"has_redirect_secret": true,
"merchant_id": "<string>",
"merchant_name": "<string>",
"branding_profile": {
"accent_color": "<string>",
"background_color": "<string>",
"border_radius": "<string>",
"button_color": "<string>",
"button_text_color": "<string>",
"color_scheme": "<string>",
"created_at": "<string>",
"display_name": "<string>",
"focus_color": "<string>",
"font_family": "<string>",
"id": "<string>",
"is_default": true,
"merchant_id": "<string>",
"name": "<string>",
"primary_color": "<string>",
"updated_at": "<string>",
"button_text": "<string>",
"error_color": "<string>",
"logo_url": "<string>",
"success_color": "<string>",
"warning_color": "<string>"
},
"default_branding_profile_id": "<string>",
"redirect_secret_rotated_at": "<string>"
},
"message": "<string>",
"request_id": "<string>",
"status": "ok"
}{
"detail": "Missing or invalid Bearer token.",
"status": 401,
"title": "Authentication Required",
"type": "urn:radiumone:gateway:authentication-required"
}{
"detail": "Insufficient permissions for this operation.",
"status": 403,
"title": "Permission Denied",
"type": "urn:radiumone:gateway:permission-denied"
}{
"detail": "The requested resource does not exist.",
"status": 404,
"title": "Not Found",
"type": "urn:radiumone:gateway:not-found"
}{
"detail": "An unexpected error occurred.",
"status": 500,
"title": "Internal Server Error",
"type": "urn:radiumone:gateway:internal-server-error"
}Authorizations
Bearer access token from POST /v1/auth/token. Treat it as an opaque string — do not depend on its internal encoding, which has changed before and isn't part of the contract.
Query Parameters
Branding profile to embed in the response. If the id is unknown or not one of your profiles, your default branding profile is embedded instead.
Response
Successful Response
Standard success envelope. Every successful response has this shape, with the operation's own payload under data.
The operation's result. Its shape is documented per operation; omitted on responses that carry no payload.
Show child attributes
Show child attributes
Optional human-readable note. Omitted from the response when not set, which is the case for every payment operation today. Never parse it.
Correlation ID for this HTTP request, for logs and support. Send your own in the X-Request-Id header (letters, digits and hyphens, up to 36 characters -- other characters are stripped) or the gateway generates one. This is NOT the request_id idempotency key you send in a transaction body; the two are unrelated.
Always ok on a successful (2xx) response. Errors use a different body shape entirely (RFC 9457 problem details), so branch on the HTTP status code, not on this field.