Set card controls
API reference
Limit the amount of money that can be spent through different channels in a given period.
You can update controls on existing card without reissuing the card.
Endpoint: /cardmanagement/v1/cards/{cardId}/controls
PUT
https://sandbox.crbcos.com/cardmanagement/v1/cards/{cardId}/controls
curl --location --request PUT 'https://sandbox.crbcos.com/cardmanagement/v1/cards/cc25620c-d865-4801-9128-b44700ccb94c/controls' \
--data '{
"authorizationControls": [
{
"type": "country",
"action": "ALLOW",
"list": [
"string"
]
}
],
"velocityControls": [
{
"type": "pos",
"action": "ALLOW",
"list": [
{
"period": "DAY",
"amount": 0,
"usageLimit": 0
}
],
"cashback": "ALLOW"
}
]
}'Combining multiple authorization controls
You can combine multiple authorization control types on a single card. All controls must pass for transaction approval.
Example - comprehensive control set:
{
"authorizationControls": [
{
"type": "country",
"action": "ALLOW",
"list": ["US"]
},
{
"type": "currency",
"action": "ALLOW",
"list": ["USD"]
},
{
"type": "mcc",
"action": "ALLOW",
"list": ["5172", "5541", "5542", "5552"]
},
{
"type": "mid",
"action": "DENY",
"list": ["BLOCKED_MERCHANT_123"]
}
]
}
Evaluation logic:
- ✅ Country must be US
- ✅ Currency must be USD
- ✅ MCC must be fuel-related (5172, 5541, 5542, 5552)
- ✅ MID must exclude BLOCKED_MERCHANT_123
All conditions must be satisfied for approval.