Skip to main content
POST
Exchange a hosted-checkout handoff

Authorizations

X-Checkout-Handoff
string
header
required

Short-lived one-time handoff read from the hosted checkout URL fragment and removed from browser history before exchange.

Headers

Idempotency-Key
string
required

Path Parameters

locationId
string
required
cartId
string
required

Response

Checkout handoff exchanged.

cart
object
required
cartAccessToken
string
required

Checkout-origin cart capability. Store it in tab-scoped storage and send it only as X-Cart-Token.

merchantSlug
string
required

Verified merchant slug for customer authentication on a shared hosted-checkout origin.