Create embed session
API reference
This is the single endpoint a partner backend calls to mint the short-lived, opaque embed session that the cardholder's browser then loads as a P1-hosted iframe. It carries no card data.
Endpoint: /cardmanagement/v1/cards/{id}/embed-session
POST
https://sandbox.crbcos.com/cardmanagement/v1/cards/{id}/embed-session
curl -X POST \
"https://sandbox.crbcos.com/cardmanagement/v1/cards/{id}/embed-session" \
-H "Authorization: Bearer <JWT>" \
-H "Content-Type: application/json" \
-d '{ "targetOrigin": "https://app.acmepay.io" }'