SIX 3 DS API is one of 11 APIs that SIX publishes on the APIs.io network, described by a machine-readable OpenAPI specification.
Tagged areas include 3D. The published artifact set on APIs.io includes an OpenAPI specification.
This API exposes
12 operations
across 9 paths,
and defines 40 schemas.
It is described by OpenAPI 3.2.0, at version 2.36.0.
Requests are made against 12 base URLs: https://api.six-group.com/api/debix/bank/cardtoken/v2, https://api-preprod.np.six-group.com/api/debix/bank/cardtoken/v2, https://api.six.ssfn.ch/api/debix/bank/cardtoken/v2, https://api-preprod.np.six.ssfn.ch/api/debix/bank/cardtoken/v2, https://api.p2p.six-group.com/api/debix/bank/cardtoken/v2, https://api-preprod.np.p2p.six-group.com/api/debix/bank/cardtoken/v2, https://api.six-group.com/api/debix/bank/v2, https://api-preprod.np.six-group.com/api/debix/bank/v2, https://api.six.ssfn.ch/api/debix/bank/v2, https://api-preprod.np.six.ssfn.ch/api/debix/bank/v2, https://api.p2p.six-group.com/api/debix/bank/v2, https://api-preprod.np.p2p.six-group.com/api/debix/bank/v2.
12 operations9 paths40 schemas1 DELETE1 GET8 POST2 PUT
Metadata
The identity and technical contract details declared by the specification.
Specification
OpenAPI 3.2.0
API Version
2.36.0
Base URL
https://api.six-group.com/api/debix/bank/v2
Resource Areas
1
Paths & Operations 12
Across 9 paths, the API surfaces 12 operations — 1 DELETE, 1 GET, 8 POST, 2 PUT. Each is listed below with its method, path, parameters, and response codes.
3 DS 12
3DS lifecycle, 3DS details, OTRC order.
POST
/cards/{cardToken}/3ds
Registers the card for 3DS
threeDsRegister3 paramsbody→ 204400404default
PUT
/cards/{cardToken}/3ds
Updates the 3DS data
threeDsUpdate3 paramsbody→ 204400404default
DELETE
/cards/{cardToken}/3ds
Deregisters the given card from 3DS and deletes the corresponding data
threeDsDelete3 params→ 204400404default
POST
/cards/{cardToken}/3ds/details
Returns the 3DS details for the given card
threeDsDetails3 paramsbody→ 200400404default
GET
/cards/{cardToken}/otrc
Orders an online One-Time-Registration-Code (OTRC)
otrcOrder3 params→ 200400default
POST
/cards/{cardToken}/otrc-datamailer
Orders an One-Time-Registration-Code (OTRC) via datamailer
otrcOrderDatamailer3 paramsbody→ 202400default
POST
/cards/3ds
Registers the card for 3DS
postCards3ds2 paramsbody→ 204400404default
PUT
/cards/3ds
Updates the 3DS data
putCards3ds2 paramsbody→ 204400404default
POST
/cards/3ds/delete
Deregisters a card from 3DS and deletes the corresponding data
postCards3dsDelete2 paramsbody→ 204400404default
POST
/cards/3ds/details
Returns the 3DS details for this card
postCards3dsDetails2 paramsbody→ 200400404default
POST
/cards/otrc
Orders an online One-Time-Registration-Code (OTRC)
postCardsOtrc2 paramsbody→ 200400default
POST
/cards/otrc-datamailer
Orders an One-Time-Registration-Code (OTRC) via datamailer
The contract defines 40 schemas that model the data the API accepts and returns. The most detailed are ThreeDsDetailsResponse (9 properties), ThreeDsData (8 properties), PartialThreeDsData (8 properties), BankApiError (5 properties). Each schema is shown below with its type and property counts.
PinCode
string
PIN code used for 3DS authentication; required for authentication method PIN and BIOMETRICWITHPINFALLBACK.
DatamailerDeliveryDestination
string
Specifies the delivery destination for OTRC, PIN, and card datamailer.
ThreeDsDetailsRequest
object
Identifiers of the card for which to return the 3DS details.
1 property1 required
AuthId
string
Identifier for the device used for 3DS. Note: authId is a mandatory parameter which must be provided when registering a card with authentication method PIN, BI…
CardSequenceNumber
integer
Sequence number of the card.
ThreeDsDetailsResponse
object
Contains detailed information about 3DS.
9 properties2 required
PhoneNumber
string
Mobile or landline phone number. Note: phoneNumber is a mandatory parameter which must be provided to register a card with authentication method SMSONLY, PIN,…
DatamailerExpressCode
string
Defines the express code of OTRC and PIN datamailer delivery.
PartialThreeDsData
object
Partial data pertaining to a 3DS registration.
8 properties
Password
string
This parameter must be used exclusively by issuers with special regulations (e.g., PSD2). It must be provided if the issuer intends to register a card for 3DS…
OtrcDatamailerOrderRequest
object
Details of the OTRC datamailer order request.
4 properties2 required
CardTokenExtension
object
Extension to card token to identify a card.
2 properties2 required
CardToken
string
Unique card token of a card.
Country
string
Country code in format ISO 3166-1 alpha 2.
ErrorDetail
object
2 properties1 required
AuthenticationMethod
string
User authentication method. For 3DS Out-of-Band (OOB), authentication method DELEGATED must be selected.
ThreeDsData
object
Relevant data to register a card for 3DS with a specific authentication method based on the setup desired by the issuer (i.e. for 3DS via SIX SDK or 3DS OOB).
8 properties2 required
Language
string
Correspondence language.
UnstructuredAddress
array
Unstructured address of simple address lines.
BiometricType
string
Type of biometric authentication; required for authentication method BIOMETRIC and BIOMETRICWITHPINFALLBACK.
ThreeDsRegisterRequest
object
Contains the card identifiers and 3DS-related data for the registration of a card.
2 properties2 required
ThreeDsUpdateRequest
object
Contains the 3DS-related data to be updated.
1 property1 required
OtrcOrderResponse
object
Contains the OTRC information.
2 properties2 required
YearMonth
object
2 properties2 required
BankApiError
object
Information about an error on API requests.
5 properties2 required
MailerTextCode
integer
Reference to a predefined text container that will be printed on the datamailer.
ThreeDsAuthenticationMethod
string
User authentication method for either 3DS via debiX Api, via debiX+ App or via SMS.
DeliveryInformation
object
Delivery address of card, PIN and OTRC.
3 properties2 required
CardType
integer
A single digit that distinguishes the card types of the schemes. - 1: Debit mastercard - 3: Visa debit - 6: Bank card
ThreeDsDetailsRequest_2
object
Identifier of the card for which to return the 3DS details.
1 property1 required
BankClearingNumber
integer
Unique number used to identify each bank agency or branch in the bank directory.
OtrcDatamailerOrderRequest_2
object
Details of the OTRC datamailer order request.
5 properties3 required
CardId
object
Complex object representing a card consisting of bank clearing number, card number, card type, card sequence number and card expiry.
5 properties5 required
CardSeqNumber
integer
Sequence number of the card.
CardNumber
integer
Card number of the card.
ThreeDsRegisterRequest_2
object
Contains the card identifier and 3DS-related data for the registration of a card.
2 properties2 required
OtrcOrderRequest
object
Contains the card identifier to order an OTRC.
1 property1 required
ThreeDsUpdateRequest_2
object
Contains the card identifier, as well as 3DS-related data to be updated.
2 properties2 required
ShortCardId
object
Complex object representing a card consisting of bank clearing number, card number and card type.
3 properties3 required
ThreeDsDeleteRequest
object
Contains the card identifier to perform a 3DS deregistration.
1 property1 required
Specification
The full machine-readable OpenAPI contract behind this narrative.
Every API here is available over the API and to AI agents over MCP. APIs is not yet its own endpoint on the v1 API. Reach this content through network search and the tag graph, or the MCP server below.
Installs https://mcp.apievangelist.com/mcp in Claude, Cursor, VS Code and the rest — one button, every client.
MCP tools for apis
4 tools reach this content
search_api_evangelistSearch every content type across the network at once.
find_relatedThe shared-tag relevance graph — what else covers this.
get_tagEverything one tag labels, across all content types.
guide_topicPRO — a curated bundle for a topic: area, guidance, rules, papers, stories, services.
A second provider on the same verified email joins the account you already have.
Your account
ⓘWhere this information came from
This is an independent, third-party profile of SIX 3 DS API, published by
API Evangelist. We do not operate, host, resell, or
support these APIs, and we are not affiliated with or endorsed by the company unless stated above.
Everything here is built from publicly available information — the company's own site,
developer portal, documentation, public repositories, and the specifications it publishes for public use.
Nothing is obtained by breaching a system, defeating an access control, or using credentials.
The Kin Score and Agent Readiness rating are independently calculated assessments of a company's
public API artifacts, scored against a published rubric. They are not certifications,
endorsements, security assessments, or audits.
Corrections, re-scores, and removal are free — no partnership or purchase required, and
you do not need to justify the request. A removed company is recorded as unrated, never scored
zero for having asked. Acknowledgement within one business day; removal within two.
info@apievangelist.com
·
Read the full data-sourcing policy → On a security or compliance team? Put security in the subject line and
you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.