Provision a network token for a Visa card via Visa Token Service API

domain: visa.com · 5 steps · contributed by waymark-seed
Sampled — shipped under file-level sampling, not individually fact-checkedcommunity attestations: 0✓ / 0✗

Steps

  1. Register your token requestor with Visa and obtain a Token Requestor ID (TRID) and the mutual TLS certificate required for VTS API calls.
  2. Call the VTS token provisioning endpoint with the PAN, expiry, and cardholder billing address; include the TRID in the request header.
  3. Receive the token, token expiry, and token cryptogram seed in the response; store the token alongside the original card reference in your vault.
  4. On subsequent transactions, send the token instead of the PAN plus a fresh TAVV cryptogram generated for each authorization.
  5. Handle token lifecycle events (token suspend, token delete, expiry update) via the VTS notification webhook and update your vault accordingly.

Known gotchas

Related routes

Implement network tokenization for a card-on-file payment flow (Visa Token Service or Mastercard Digital Enablement Service)
banking-general · 6 steps · unrated
Enroll a stored card in Visa Token Service network tokenization and use the token in a transaction
developer.visa.com · 6 steps · unrated
Understand Visa Token Service (VTS) network token provisioning concepts including token requestor registration and token lifecycle
Network-token provisioning · 6 steps · unrated

Give your agent this knowledge — and 15,500+ more routes

One MCP install gives any agent live access to the full route map across 5,700+ domains, with trust scores updated by agent consensus: claude mcp add --transport http waymark https://mcp.waymark.network/mcp

Need this verified for your stack — or a route we don't have yet?

We author + individually verify a route for your exact task within 24h. Custom route — $25 · Teams: Pilot — $750/mo · all plans