SECURE PORTAL ACCESS

Govern PalmPay through the right portal.

Role-specific web access for merchant operations and privileged platform administration.

MERCHANT ACCESS

Merchant Portal

For chain owners, administrators, finance, loyalty, operations and integration teams.

Sign in to Merchant PortalProduction URL pending configuration.
PRIVILEGED ACCESS

Admin Portal

For authorized platform administration, ecosystem governance, risk, security and operations.

Sign in to Admin PortalProduction URL pending configuration.
Need an account?

Access is invitation-based and tenant-scoped. Start business onboarding or contact the enterprise owner for an invitation.

Request enterprise access
01

Merchant Portal

For merchant owners, administrators, finance and operations.

Tenant and stores

Manage chain, branches, stores, terminals, users and delegated roles.

Transactions and value

Monitor payments, internal ledger, VA mapping, reconciliation, refund and disputes.

Loyalty and campaigns

Configure campaigns, tiers, earn/redeem policies, voucher, affiliate and approvals.

Integrations and reports

POS/ECR, CRM/ERP, API, webhook, operational dashboard and exports.

02

Admin Portal

For Mobile-ID or an authorized platform operator.

Ecosystem governance

Banks, merchants, tenants, products, policies, risk profiles and system configuration.

Device and biometric operations

Fleet, certificate, firmware, health, palm services, thresholds and incident view.

Approval and audit

Maker-checker, privileged actions, evidence, immutable logs and compliance reporting.

Platform operations

Service health, queues, exceptions, reconciliation, alerts, support and change control.

03

Sign-in security

Marketing and authentication remain separated.

Federated access

GoPaperless SSO/OIDC or approved enterprise federation.

Strong authentication

MFA or passkey; step-up for refund, bank configuration, device and high-risk administration.

Session and tenant controls

Secure cookies, short privileged session, logout, device/session view and strict tenant boundary.

No public credential form

The marketing site redirects to configured portal origins; credentials never pass through the public website.

ROLE & PRIVILEGE MODEL

Portal access follows business responsibility-not job-title convenience

Enterprise Owner

Represents the merchant tenant, accepts enterprise terms, nominates administrators, controls high-level integrations and sees contractual or organization-wide settings. Succession and emergency replacement require verified authority.

Finance and reconciliation

Finance users review bank credits, VA mapping, wallet ledger, refunds, settlement, loyalty liability and closing reports. They should not change biometric thresholds, firmware or unrelated user-access policy.

Operations and stores

Operations users manage locations, shifts, terminal status, incidents and permitted transaction actions. Store scope, time-bound access and separation between cashier, supervisor and regional operations reduce misuse.

Privileged administrator

Platform administrators manage tenants, bank adapters, device certificates, system policy and incidents. Privileged sessions should be short, monitored and protected by maker-checker for impactful changes.

Can the public website collect portal passwords?

No. It only links to approved portal origins. Authentication occurs on the governed identity domain.

What happens when an employee leaves?

The organization revokes invitations, sessions, roles and authenticators, then preserves the audit record. Shared accounts are not permitted.

Which actions need step-up authentication?

Examples include refund approval, bank configuration, device certificate actions, bulk point adjustment, role elevation and security-policy change.

MOBILE-ID / TRUSTED PALMPAY

Request portal access

Access is provisioned only after organization, authority, tenant and role verification.

Request portal access