# Cashflows

**Canonical:** https://apis.io/providers/cashflows/  
**Website:** https://www.cashflows.com/  
**APIs profiled:** 4

Cashflows is a United Kingdom payment gateway and card acquirer, headquartered in London and a principal member of Visa and Mastercard, that helps businesses accept, process, and manage card payments across online, in-app, and in-person channels. Its product family spans a REST Cashflows Gateway (payment jobs, captures, refunds, tokenisation, recurring payments, and webhooks), hosted and embedded checkout, a cardholder-not-present Payments API with 3-D Secure, a Remote Authentication API for connecting to the acquiring network, and an In-Person Payments API served locally from Kinetic PCI-PTS terminals. Cashflows ships a genuine self-serve developer portal at developer.cashflows.com with reference documentation, a dedicated integration/sandbox environment, and webhook-based payment notifications, but it does not publish a downloadable OpenAPI/Swagger definition or a public Postman collection; its API reference is hand-authored HTML. Authentication is header-based (ConfigurationId plus a SHA-512 request hash for the Gateway, and auth_id/auth_pass for Remote Authentication) rather than OAuth.

## Kin Score — 50.3 / 100 (developing)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 50.3).

| Facet | Score |
|---|---|
| Discoverability | 72.2 |
| Contract Quality | 45.1 |
| Governance | 18.2 |
| Contract Governance | 18.2 |
| Operational Transparency | 26.3 |
| Developer Ergonomics | 71.4 |
| Commercial Clarity | 38.2 |
| Access Clarity | 38.2 |

Regulatory layer — **Payments**: 60.9 (matched via tags).

## Agent readiness — 32.5 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | yes |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## APIs (4)

- **Cashflows Gateway API** — REST API for creating and managing payment jobs and payments — create, retrieve, and cancel payment jobs; capture, refund, and cancel individual payments; card tokenisation; and...
- **Cashflows Payments API** — REST/JSON API for cardholder-not-present card payments with 3-D Secure support — authorisation, capture, void, refund, credit, IIN lookup, and 3-D Secure version 2 authenticatio...
- **Cashflows Remote Authentication API** — API for connecting directly to the Cashflows acquiring network to authorise card transactions, authenticated with auth_id (Profile/Merchant ID) and auth_pass credential headers.
- **Cashflows In-Person Payments API** — Standalone REST API for PCI-PTS secure Kinetic payment devices, served locally from the terminal (default http://127.0.0.1:8080) under /api/v2 — device info, ping/status, settin...

## MCP servers (1)

- **Cashflows MCP Server**

## Security (2)

- **Cashflows Authentication** — apiKey/http-hash-signature/credential-pair · 3 schemes
- **Cashflows Domain Security** — TLSv1.3 · HSTS · DMARC

## Tags

Payments, United Kingdom, Payment Gateway, Payment Processing, Acquiring, Card Payments, In-Person Payments, 3D Secure, Recurring Payments, Webhook

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/cashflows/). Scores are computed from the provider's own public artifacts under a published rubric.
