---
title: "Provision card (Digital Wallet)"
method: POST
path: "/v1/cards/{card_token}/provision"
tags: ["Card"]
---

# Provision card (Digital Wallet)

`POST /v1/cards/{card_token}/provision`

Allow your cardholders to directly add payment cards to the device's digital wallet (e.g. Apple Pay) with one touch from your app.

This requires some additional setup and configuration. Please [Contact Us](https://lithic.com/contact) or your Customer Success representative for more information.

## Path parameters

- `card_token` string, uuid, required

## Request body

- object
  - `certificate` string, byte — Only applicable if `digital_wallet` is `APPLE_PAY`. Omit to receive only `activationData` in the response. Apple's public leaf certificate. Base64 encoded in PEM format with headers `(-----BEGIN CERTIFICATE-----)` and trailers omitted. Provided by the device's wallet.
  - `client_wallet_account_id` string — Only applicable if `digital_wallet` is `GOOGLE_PAY` or `SAMSUNG_PAY`. Consumer ID that identifies the wallet account holder entity. Required for both wallets regardless of network, though the value is only used for cards on the Visa network and is ignored on Amex and Mastercard.
  - `client_device_id` string — Only applicable if `digital_wallet` is `GOOGLE_PAY` or `SAMSUNG_PAY`. Stable device identification set by the wallet provider. Required for both wallets regardless of network, though the value is only used for cards on the Visa network and is ignored on Amex and Mastercard.
  - `digital_wallet` 'APPLE_PAY' | 'GOOGLE_PAY' | 'SAMSUNG_PAY' — Name of digital wallet provider.
  - `nonce` string, byte — Only applicable if `digital_wallet` is `APPLE_PAY`. Omit to receive only `activationData` in the response. Base64 cryptographic nonce provided by the device's wallet.
  - `nonce_signature` string, byte — Only applicable if `digital_wallet` is `APPLE_PAY`. Omit to receive only `activationData` in the response. Base64 cryptographic nonce provided by the device's wallet.

## Response `200`

Returns `provisioning_payload`, a cryptographic payload representing a payment card that can be passed to a device's digital wallet. Each digital wallet has a different API; consult the wallet's documentation for more info.

- object
  - `provisioning_payload` union
    - string — Base64 encoded JSON payload representing a payment card that can be passed to a device's digital wallet. Applies to Google and Samsung Pay wallets.
    - object — Object containing the fields required to add a card to Apple Pay. Applies only to Apple Pay wallet.
      - `activationData` string
      - `ephemeralPublicKey` string
      - `encryptedData` string

## Other responses

- `400` — A parameter in the query given in the request does not match the valid queries for the endpoint.
- `401` — | | | |---|---| | User has not been authenticated | Invalid or missing API key | | API key is not active | The API key used is no longer active | | Could not find API key | The API key provided is not associated with any user | | Please provide API key in Authorization header | The Authorization header is not in the request | | Please provide API key in the form Authorization: [api-key] | The Authorization header is not formatted properly | | Insufficient privileges. Issuing API key required | Write access requires an Issuing API key. Reach out at [lithic.com/contact](https://lithic.com/contact) | | Insufficient privileges to create virtual cards. | Creating virtual cards requires an additional privilege | Reach out at [lithic.com/contact](https://lithic.com/contact) |
- `404` — The specified resource was not found.
- `422` — Unprocessable entity.
- `429` — Client has exceeded the number of allowed requests in a given time period. | | | |---|---| | Rate limited, too many requests per second | User has exceeded their per second rate limit | | Rate limited, reached daily limit | User has exceeded their daily rate limit | | Rate limited, too many keys tried | One IP has queried too many different API keys |

---

[API](https://skmtc.dev/lithic-com/apis/lithic-developer-api.md) · [All operations](https://skmtc.dev/lithic-com/apis/lithic-developer-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/lithic-com/lithic-developer-api/revisions/c9806df29604/schema)
