# card_token

## uuid

**required**  
The unique token of the card to add to the device's digital wallet.

## Update request.

### certificate

**string**  
Only applicable if `digital_wallet` is `APPLE_PAY`. Omit to receive only `activationData` in the response. Apple's public leaf certificate. Base64 encoded in PEM format with headers `(-----BEGIN CERTIFICATE-----)` and trailers omitted. Provided by the device's wallet.

### client_wallet_account_id

**string**  
Only applicable if `digital_wallet` is `GOOGLE_PAY` or `SAMSUNG_PAY` and the card is on the Visa network. Consumer ID that identifies the wallet account holder entity.

### client_device_id

**string**  
Only applicable if `digital_wallet` is `GOOGLE_PAY` or `SAMSUNG_PAY` and the card is on the Visa network. Stable device identification set by the wallet provider.

### digital_wallet

**string**

**enum**  
Name of digital wallet provider.

- `APPLE_PAY`
- `GOOGLE_PAY`
- `SAMSUNG_PAY`

### nonce

**string**  
Only applicable if `digital_wallet` is `APPLE_PAY`. Omit to receive only `activationData` in the response. Base64 cryptographic nonce provided by the device's wallet.

### nonce_signature

# Response Codes

### `200`
Returns `provisioning_payload`, a cryptographic payload representing a payment card that can be passed to a device's digital wallet. Each digital wallet has a different API; consult the wallet's documentation for more info.

#### provisioning_payload

**string**  
Base64 encoded JSON payload representing a payment card that can be passed to a device's digital wallet. Applies to Google and Samsung Pay wallets.

### `400`
A parameter in the query given in the request does not match the valid queries for the endpoint.

### `401`
User has not been authenticated  
- Invalid or missing API key  
- API key is not active  
- Could not find API key  
- Please provide API key in Authorization header  
- Please provide API key in the form Authorization: \[api-key\]  
- Insufficient privileges. Issuing API key required  
- Insufficient privileges to create virtual cards.

### `404`
The specified resource was not found.

### `422`
Unprocessable entity.

### `429`
Client has exceeded the number of allowed requests in a given time period.  
- Rate limited, too many requests per second  
- Rate limited, reached daily limit  
- Rate limited, too many keys tried

# Example Request

```shell
curl --request POST \
     --url https://sandbox.lithic.com/v1/cards/card_token/provision \
     --header 'accept: application/json' \ 
     --header 'content-type: application/json' \ 
     --data '
{
  "digital_wallet": "GOOGLE_PAY"
}
'
```

# Example Response

```json
{
  "provisioning_payload": "string"
}
```
