VA model
Ownership, customer/merchant mapping, naming, lifecycle, receiving account and reconciliation key.
Open Banking, POS, device, integration and channel partnerships with explicit responsibilities and measurable acceptance.
Describe the intended partnership and technical scope without submitting secrets, credentials or customer data.
Define the money-flow contract before integration.
Ownership, customer/merchant mapping, naming, lifecycle, receiving account and reconciliation key.
Authentication, signing, timestamp, anti-replay, idempotency, retry, ordering and acknowledgement.
Unmatched, duplicate, delayed, reversed, invalid signature, amount mismatch and manual review.
Bank, merchant, PalmPay and licensed parties agree settlement, refund, support and evidence roles.
Integrate product components without weakening governance.
Order context, amount integrity, result callback, receipt, retry, offline and certification test pack.
Capture, quality, PAD/liveness evidence, template strategy, protocol, security, firmware and support.
Customer, campaign, store, transaction, point, reconciliation and reporting data contracts.
Sales scope, installation, training, inventory, SLA, escalation and controlled branding.
Partnership moves by measurable acceptance.
Business model, roles, target environment, integration, security and KPI.
API, event, certificate, error model, sample data and negative cases.
Controlled stores/users, monitoring, support, fraud/exception handling and reconciliation.
Evidence pack, lessons, changes, commercial terms, rollout plan and governance cadence.
Each notification should carry a stable bank transaction identifier, VA, merchant account, amount, currency, value time, posting status, event version and correlation reference. Repeated delivery must not create repeated wallet credit.
mTLS, approved signatures or MAC, timestamp, nonce, key rotation, source allow-listing and API gateway controls establish event authenticity. The receiver records verification outcome before business processing.
Real-time events are reconciled against bank statements or authoritative enquiry. Unmatched and delayed items enter a controlled queue; reversal and correction use new immutable entries rather than deleting history.
The bank, merchant and PalmPay agree incident severity, contact paths, retry windows, maintenance, certificate renewal, settlement cut-off, reporting, complaint handling and change notification before pilot.
The bank or authorized provider owns the VA capability. PalmPay consumes the approved mapping and event contract to reconcile the merchant-specific internal ledger.
It is not silently credited. It enters an exception workflow for evidence, mapping, approval, customer communication and eventual credit, return or rejection according to the agreed model.
Yes, through separate adapters and bank-specific contracts while preserving a common internal event and reconciliation model.
Mobile-ID will qualify the business path, integration contract, security evidence, support model and pilot plan.