curl --request POST \
--url https://api.platform.sandbox.dakota.xyz/wallets/{wallet_id}/card_enablement \
--header 'Content-Type: application/json' \
--header 'x-api-key: <api-key>' \
--header 'x-idempotency-key: <x-idempotency-key>' \
--data '
{
"signatures": [
"LS0tLS1CRUdJ...0tLS0tCg=="
],
"intent": {
"type": "enable_card_settlement",
"wallet_id": "1NFHrqBHb3cTfLVkFSGmHZqdDPi",
"idempotency_key": "7d3f6c2e-9a41-4f3b-bd1c-2e5a8f0c4b19"
}
}
'const options = {
method: 'POST',
headers: {
'x-idempotency-key': '<x-idempotency-key>',
'x-api-key': '<api-key>',
'Content-Type': 'application/json'
},
body: JSON.stringify({
signatures: ['LS0tLS1CRUdJ...0tLS0tCg=='],
intent: {
type: 'enable_card_settlement',
wallet_id: '1NFHrqBHb3cTfLVkFSGmHZqdDPi',
idempotency_key: '7d3f6c2e-9a41-4f3b-bd1c-2e5a8f0c4b19'
}
})
};
fetch('https://api.platform.sandbox.dakota.xyz/wallets/{wallet_id}/card_enablement', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));import requests
url = "https://api.platform.sandbox.dakota.xyz/wallets/{wallet_id}/card_enablement"
payload = {
"signatures": ["LS0tLS1CRUdJ...0tLS0tCg=="],
"intent": {
"type": "enable_card_settlement",
"wallet_id": "1NFHrqBHb3cTfLVkFSGmHZqdDPi",
"idempotency_key": "7d3f6c2e-9a41-4f3b-bd1c-2e5a8f0c4b19"
}
}
headers = {
"x-idempotency-key": "<x-idempotency-key>",
"x-api-key": "<api-key>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://api.platform.sandbox.dakota.xyz/wallets/{wallet_id}/card_enablement"
payload := strings.NewReader("{\n \"signatures\": [\n \"LS0tLS1CRUdJ...0tLS0tCg==\"\n ],\n \"intent\": {\n \"type\": \"enable_card_settlement\",\n \"wallet_id\": \"1NFHrqBHb3cTfLVkFSGmHZqdDPi\",\n \"idempotency_key\": \"7d3f6c2e-9a41-4f3b-bd1c-2e5a8f0c4b19\"\n }\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("x-idempotency-key", "<x-idempotency-key>")
req.Header.Add("x-api-key", "<api-key>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}{
"state": "attaching",
"settlement_destination": "0x1111111111111111111111111111111111111111"
}Enable card settlement on a wallet
Executes the card-settlement enablement ceremony for the wallet from a
customer-endorsed EnableCardSettlementIntent. The settlement
destination is not part of the intent: Dakota supplies it from its own
configuration; settlement_destination is not part of the intent, and
an intent containing it is rejected with a 400. Idempotent: replaying
the call on an active enablement is a no-op. While the enablement is
still attaching, recovery depends on why the previous attempt did not
complete: after a transient failure (the service was briefly
unavailable) replay the SAME intent WITH THE SAME SIGNATURES to resume
— the signatures are part of what the idempotent replay is keyed on,
so re-signing the same intent is rejected as a conflicting replay
rather than resumed. After a rejected endorsement, replaying that
request replays the cached rejection — submit a CORRECTED intent under
a fresh idempotency_key, with fresh signatures, instead. If the
configured settlement destination has changed since the enablement was
recorded, the call returns a #card-enablement-conflict problem — an
enablement is never silently re-pointed.
The signatures array is capped at 16 entries, each at most 8192
bytes.
curl --request POST \
--url https://api.platform.sandbox.dakota.xyz/wallets/{wallet_id}/card_enablement \
--header 'Content-Type: application/json' \
--header 'x-api-key: <api-key>' \
--header 'x-idempotency-key: <x-idempotency-key>' \
--data '
{
"signatures": [
"LS0tLS1CRUdJ...0tLS0tCg=="
],
"intent": {
"type": "enable_card_settlement",
"wallet_id": "1NFHrqBHb3cTfLVkFSGmHZqdDPi",
"idempotency_key": "7d3f6c2e-9a41-4f3b-bd1c-2e5a8f0c4b19"
}
}
'const options = {
method: 'POST',
headers: {
'x-idempotency-key': '<x-idempotency-key>',
'x-api-key': '<api-key>',
'Content-Type': 'application/json'
},
body: JSON.stringify({
signatures: ['LS0tLS1CRUdJ...0tLS0tCg=='],
intent: {
type: 'enable_card_settlement',
wallet_id: '1NFHrqBHb3cTfLVkFSGmHZqdDPi',
idempotency_key: '7d3f6c2e-9a41-4f3b-bd1c-2e5a8f0c4b19'
}
})
};
fetch('https://api.platform.sandbox.dakota.xyz/wallets/{wallet_id}/card_enablement', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));import requests
url = "https://api.platform.sandbox.dakota.xyz/wallets/{wallet_id}/card_enablement"
payload = {
"signatures": ["LS0tLS1CRUdJ...0tLS0tCg=="],
"intent": {
"type": "enable_card_settlement",
"wallet_id": "1NFHrqBHb3cTfLVkFSGmHZqdDPi",
"idempotency_key": "7d3f6c2e-9a41-4f3b-bd1c-2e5a8f0c4b19"
}
}
headers = {
"x-idempotency-key": "<x-idempotency-key>",
"x-api-key": "<api-key>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://api.platform.sandbox.dakota.xyz/wallets/{wallet_id}/card_enablement"
payload := strings.NewReader("{\n \"signatures\": [\n \"LS0tLS1CRUdJ...0tLS0tCg==\"\n ],\n \"intent\": {\n \"type\": \"enable_card_settlement\",\n \"wallet_id\": \"1NFHrqBHb3cTfLVkFSGmHZqdDPi\",\n \"idempotency_key\": \"7d3f6c2e-9a41-4f3b-bd1c-2e5a8f0c4b19\"\n }\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("x-idempotency-key", "<x-idempotency-key>")
req.Header.Add("x-api-key", "<api-key>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}{
"state": "attaching",
"settlement_destination": "0x1111111111111111111111111111111111111111"
}Authorizations
Headers
Unique key to ensure request idempotency. If the same key is used within a certain time window, the original response will be returned instead of executing the request again.
Path Parameters
Wallet ID KSUID is a 27-character globally unique ID that combines a timestamp with a random component. Used for all entity identifiers in the Dakota platform.
27^[0-9A-Za-z]{27}$"1NFHrqBHb3cTfLVkFSGmHZqdDPi"
Body
List of signatures over the intent
Cryptographic signature over the intent, base64-encoded. For an ES256 signer this is the ASN.1 DER ECDSA signature over the SHA-256 of the canonical intent. For a WEBAUTHN signer this is the base64 of the WebAuthn assertion JSON (id, rawId, type, and response.authenticatorData / clientDataJSON / signature). See the WebAuthn & Passkey Signing guide.
The intent being endorsed
- Option 1
- Option 2
- Option 3
- Option 4
- Option 5
- Option 6
- Option 7
- Option 8
- Option 9
- Option 10
Show child attributes
Show child attributes
Response
The wallet's card enablement after the call
The card-settlement enablement state of a wallet.
Enablement lifecycle state. not_enabled — no enablement exists;
attaching — the ceremony is endorsed but not fully in force
(see the enablement endpoint for how to recover: a transient
failure resumes by replaying the same intent with the same
signatures, a rejected endorsement requires a corrected intent
under a fresh idempotency_key);
active — cards can be issued against the wallet;
detach_requested / detached — offboarding states.
not_enabled, attaching, active, detach_requested, detached The settlement destination address. For a not_enabled wallet,
the Dakota-configured destination the enablement will pin;
otherwise the destination recorded for the wallet. Informational:
it is not part of the intent and is not signed by the client.
Was this page helpful?

