Bank & provider reviewers

Payment-provider integration review

This page explains the proposed integration governance for authorized reviewers. It is not a public API reference and does not represent live payment acceptance.

Current status: under integration review.

Production payment acceptance is not enabled through this public website. Any payment-provider integration requires provider review, agreement, approved credentials, UAT, security validation, and written production authorization.

Purpose of this page

FenFen Pay has published this page so that a bank, payment network, or other authorized reviewer can identify our public business presence, understand the proposed implementation controls, and contact the appropriate business, technical, or compliance representative.

Detailed integration artifacts are handled through a controlled reviewer process. They are not posted here because they may contain implementation information that should be shared only after authorization.

Proposed integration scope

Subject to provider approval and the final technical specification, the proposed workflow is intended to cover the following controlled stages:

  • Approved merchant identification and credential provisioning
  • Secure API request authentication under provider-defined requirements
  • Payment initiation only after production authorization
  • Status-query and callback handling only after specification, verification, and UAT are complete
  • Operational monitoring and incident coordination for approved production services

Final functionality will be limited to the scope approved in the applicable agreement and provider documentation.

Required approval gates

  1. Commercial and merchant agreement: the relevant agreement and merchant relationship are executed and approved.
  2. Technical specification: the provider issues the applicable specification and approves the required credentials or other access mechanism.
  3. UAT: approved testing is completed according to the provider’s acceptance requirements.
  4. Security validation: callback authentication, request verification, access control, operational handling, and applicable security requirements are validated.
  5. Production authorization: the provider gives written authorization for the approved production scope.
  6. Internal go-live control: change control and operational readiness are approved before activation.

Controlled review package

When an authorized reviewer requests it through the listed contact route, the appropriate team can coordinate access to the relevant approved materials. Depending on authorization and review scope, this may include business documentation, architecture information, security evidence, UAT information, and integration details.

We do not publish credentials, secrets, signing information, callback addresses, source-IP controls, internal topology, or production endpoints on this public site.

Provider reference

Fonepay status statement

Any proposed Fonepay integration remains subject to Fonepay’s review, agreement, testing, and written production approval. This page does not claim or imply a Fonepay partnership, endorsement, certification, live integration, or payment availability.

Reviewer contact

Please use the company contact page to reach the designated business, technical integration, or compliance contact. Include your organization, review purpose, and a secure return contact method so the appropriate team can respond through the approved process.

View reviewer contact routes