Authentication

You can use any of the following that was provided during the initial integration set up of the customer:

  • JWT token (OAuth)
  • API key

ℹ️ Important:

  • The JWT token or the API key is generated either for a company, or an organisation owning different subsidiaries in a multi-entity set up.
  • In your subsequent subscription requests, use the same JWT token (OAuth) or the API key (provided during the initial configuration). This implies that for the subsequent requests, you receive webhook notifications for the same entity that Pleo has authorised.

For example, Newday is a credit card organisation. It owns Newday Technology Limited and Newday Cards Ltd. Pleo has generated API keys for Newday. So, you would receive webhook notifications for both Newday Technology Limited and Newday Cards Ltd.