How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

SIX 3 DS API

3DS lifecycle, 3DS details, OTRC order.

SIX 3 DS API is one of 11 APIs that SIX publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include 3D. The published artifact set on APIs.io includes an OpenAPI specification.

This API exposes 12 operations across 9 paths, and defines 40 schemas. It is described by OpenAPI 3.2.0, at version 2.36.0.

Requests are made against 12 base URLs: https://api.six-group.com/api/debix/bank/cardtoken/v2, https://api-preprod.np.six-group.com/api/debix/bank/cardtoken/v2, https://api.six.ssfn.ch/api/debix/bank/cardtoken/v2, https://api-preprod.np.six.ssfn.ch/api/debix/bank/cardtoken/v2, https://api.p2p.six-group.com/api/debix/bank/cardtoken/v2, https://api-preprod.np.p2p.six-group.com/api/debix/bank/cardtoken/v2, https://api.six-group.com/api/debix/bank/v2, https://api-preprod.np.six-group.com/api/debix/bank/v2, https://api.six.ssfn.ch/api/debix/bank/v2, https://api-preprod.np.six.ssfn.ch/api/debix/bank/v2, https://api.p2p.six-group.com/api/debix/bank/v2, https://api-preprod.np.p2p.six-group.com/api/debix/bank/v2.

12 operations 9 paths 40 schemas 1 DELETE1 GET8 POST2 PUT

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
2.36.0
Base URL
https://api.six-group.com/api/debix/bank/v2
Resource Areas
1

Paths & Operations 12

Across 9 paths, the API surfaces 12 operations — 1 DELETE, 1 GET, 8 POST, 2 PUT. Each is listed below with its method, path, parameters, and response codes.

3 DS 12

3DS lifecycle, 3DS details, OTRC order.

POST
/cards/{cardToken}/3ds
Registers the card for 3DS
threeDsRegister 3 params body → 204400404default
PUT
/cards/{cardToken}/3ds
Updates the 3DS data
threeDsUpdate 3 params body → 204400404default
DELETE
/cards/{cardToken}/3ds
Deregisters the given card from 3DS and deletes the corresponding data
threeDsDelete 3 params → 204400404default
POST
/cards/{cardToken}/3ds/details
Returns the 3DS details for the given card
threeDsDetails 3 params body → 200400404default
GET
/cards/{cardToken}/otrc
Orders an online One-Time-Registration-Code (OTRC)
otrcOrder 3 params → 200400default
POST
/cards/{cardToken}/otrc-datamailer
Orders an One-Time-Registration-Code (OTRC) via datamailer
otrcOrderDatamailer 3 params body → 202400default
POST
/cards/3ds
Registers the card for 3DS
postCards3ds 2 params body → 204400404default
PUT
/cards/3ds
Updates the 3DS data
putCards3ds 2 params body → 204400404default
POST
/cards/3ds/delete
Deregisters a card from 3DS and deletes the corresponding data
postCards3dsDelete 2 params body → 204400404default
POST
/cards/3ds/details
Returns the 3DS details for this card
postCards3dsDetails 2 params body → 200400404default
POST
/cards/otrc
Orders an online One-Time-Registration-Code (OTRC)
postCardsOtrc 2 params body → 200400default
POST
/cards/otrc-datamailer
Orders an One-Time-Registration-Code (OTRC) via datamailer
postCardsOtrcDatamailer 2 params body → 202400default

Schemas 40

The contract defines 40 schemas that model the data the API accepts and returns. The most detailed are ThreeDsDetailsResponse (9 properties), ThreeDsData (8 properties), PartialThreeDsData (8 properties), BankApiError (5 properties). Each schema is shown below with its type and property counts.

PinCode
string
PIN code used for 3DS authentication; required for authentication method PIN and BIOMETRICWITHPINFALLBACK.
DatamailerDeliveryDestination
string
Specifies the delivery destination for OTRC, PIN, and card datamailer.
ThreeDsDetailsRequest
object
Identifiers of the card for which to return the 3DS details.
1 property 1 required
AuthId
string
Identifier for the device used for 3DS. Note: authId is a mandatory parameter which must be provided when registering a card with authentication method PIN, BI…
CardSequenceNumber
integer
Sequence number of the card.
ThreeDsDetailsResponse
object
Contains detailed information about 3DS.
9 properties 2 required
PhoneNumber
string
Mobile or landline phone number. Note: phoneNumber is a mandatory parameter which must be provided to register a card with authentication method SMSONLY, PIN,…
DatamailerExpressCode
string
Defines the express code of OTRC and PIN datamailer delivery.
PartialThreeDsData
object
Partial data pertaining to a 3DS registration.
8 properties
Password
string
This parameter must be used exclusively by issuers with special regulations (e.g., PSD2). It must be provided if the issuer intends to register a card for 3DS…
OtrcDatamailerOrderRequest
object
Details of the OTRC datamailer order request.
4 properties 2 required
CardTokenExtension
object
Extension to card token to identify a card.
2 properties 2 required
CardToken
string
Unique card token of a card.
Country
string
Country code in format ISO 3166-1 alpha 2.
ErrorDetail
object
2 properties 1 required
AuthenticationMethod
string
User authentication method. For 3DS Out-of-Band (OOB), authentication method DELEGATED must be selected.
ThreeDsData
object
Relevant data to register a card for 3DS with a specific authentication method based on the setup desired by the issuer (i.e. for 3DS via SIX SDK or 3DS OOB).
8 properties 2 required
Language
string
Correspondence language.
UnstructuredAddress
array
Unstructured address of simple address lines.
BiometricType
string
Type of biometric authentication; required for authentication method BIOMETRIC and BIOMETRICWITHPINFALLBACK.
ThreeDsRegisterRequest
object
Contains the card identifiers and 3DS-related data for the registration of a card.
2 properties 2 required
ThreeDsUpdateRequest
object
Contains the 3DS-related data to be updated.
1 property 1 required
OtrcOrderResponse
object
Contains the OTRC information.
2 properties 2 required
YearMonth
object
2 properties 2 required
BankApiError
object
Information about an error on API requests.
5 properties 2 required
MailerTextCode
integer
Reference to a predefined text container that will be printed on the datamailer.
ThreeDsAuthenticationMethod
string
User authentication method for either 3DS via debiX Api, via debiX+ App or via SMS.
DeliveryInformation
object
Delivery address of card, PIN and OTRC.
3 properties 2 required
CardType
integer
A single digit that distinguishes the card types of the schemes. - 1: Debit mastercard - 3: Visa debit - 6: Bank card
ThreeDsDetailsRequest_2
object
Identifier of the card for which to return the 3DS details.
1 property 1 required
BankClearingNumber
integer
Unique number used to identify each bank agency or branch in the bank directory.
OtrcDatamailerOrderRequest_2
object
Details of the OTRC datamailer order request.
5 properties 3 required
CardId
object
Complex object representing a card consisting of bank clearing number, card number, card type, card sequence number and card expiry.
5 properties 5 required
CardSeqNumber
integer
Sequence number of the card.
CardNumber
integer
Card number of the card.
ThreeDsRegisterRequest_2
object
Contains the card identifier and 3DS-related data for the registration of a card.
2 properties 2 required
OtrcOrderRequest
object
Contains the card identifier to order an OTRC.
1 property 1 required
ThreeDsUpdateRequest_2
object
Contains the card identifier, as well as 3DS-related data to be updated.
2 properties 2 required
ShortCardId
object
Complex object representing a card consisting of bank clearing number, card number and card type.
3 properties 3 required
ThreeDsDeleteRequest
object
Contains the card identifier to perform a 3DS deregistration.
1 property 1 required

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

six-group-3-ds-api-openapi.yml Raw ↑

Other APIs SIX publishes across the network.

SIX Web API
SIX Bulk API
SIX bLink API
SIX Debi X API
SIX debiX Auth Provider API
Swiss Bank Master API
SIC Service Status API
SIC Clearing Day Calendar API
Settlement Info Reporting API
SIX Bank Master API
Where this information came from

This is an independent, third-party profile of SIX 3 DS API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.