
Going to Russia · Part 1
Can a digital product enter Russia?
Confirm the payment and compliance path before scaling traffic.
Going to Russia · Part 1
Going to Russia · Part 1
Confirm the payment and compliance path before scaling traffic.
Going to Russia · Part 1Developer Center
The current v1 endpoints accept Store-scoped Test credentials only. Create test orders, use NineLogix-hosted checkout and confirm final status through the API. Live credentials and payment routing remain separately gated.
curl https://www.ninelogix.com/api/v1/checkout-sessions \
-H "Authorization: Bearer nlx_test_..." \
-H "Idempotency-Key: order-demo-001" \
-H "Content-Type: application/json" \
-d '{"order_id":"demo-001","price_id":"nlx_price_approved"}'Use a Bearer API key. Test keys start with nlx_test_ and are limited to approved scopes. Plaintext is shown once and NineLogix stores only a hash. Production credentials require separate approval; test-key creation never opens live transactions.
Events include a unique event_id and timestamp. Verify HMAC-SHA256 over the raw body, reject stale timestamps and compare signatures in constant time. Browser returns never set final payment state. Test Webhook uses encrypted recoverable signing secrets, immutable events and delivery audit; replay redelivers the same event and never retries a payment.
const expected = createHmac("sha256", secret)
.update(timestamp + "." + rawBody)
.digest("hex");
// Reject stale timestamps and compare signatures in constant time.401 invalid or missing API credential · 403 scope, environment or production approval missing · 409 state/idempotency conflict · 400 invalid request · 429 rate limited.
Before launch: production credential approved, Store and capabilities active, return origins registered, webhook verification passed, idempotency replay passed and the merchant-specific production Gate opened by an administrator.
Checkout uses an approved price_id. Amount, currency, billing model and available payment methods come from the NineLogix catalog and Store capability assignments. API access does not grant refund, settlement or payout actions.