# Cuscal

**Canonical:** https://apis.io/providers/cuscal/  
**Website:** https://www.cuscal.com/  
**APIs profiled:** 3

Cuscal Limited is Australia's largest independent provider of payments and regulated data services outside the Big Four banks, founded in 1966 and listed on the ASX (ticker CCL). An Authorised Deposit-taking Institution regulated by APRA and ASIC, Cuscal supplies the connectivity and processing layer beneath hundreds of banks, mutuals, credit unions, fintechs, non-bank lenders and corporates - carrying scheme card issuing and acquiring, the New Payments Platform (NPP) with PayID and PayTo, Direct Entry, BPAY, RTGS, ATM services, AI-driven fraud monitoring, and Consumer Data Right (open banking) data-holder and accredited-data-recipient services. Its acquisitions of Indue and the Paymark/Strategic Payments Services businesses broadened its issuer-processor and acquiring reach. Cuscal's API posture is B2B and relationship-gated: it runs a public-facing Developer Hub (ReadMe-hosted) documenting CMS REST APIs for card issuing, card controls and PIN services with webhook notifications, but the full reference and any machine-readable OpenAPI definitions sit behind client onboarding rather than open self-serve signup.

## Kin Score — 30.1 / 100 (thin)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 30.1).

| Facet | Score |
|---|---|
| Discoverability | 72.2 |
| Contract Quality | 45.1 |
| Governance | 18.2 |
| Contract Governance | 18.2 |
| Operational Transparency | 10.5 |
| Developer Ergonomics | 21.4 |
| Commercial Clarity | 21.1 |
| Access Clarity | 21.1 |

Regulatory layer — **Payments**: 29.7 (matched via tags).

## Agent readiness — 20.5 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | no |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | no |
| Event Surface Described | yes |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## APIs (3)

- **Cuscal Digital Card Issuance API** — Part of Cuscal's CMS REST API family for card issuers. Enables instant digital card issuance and provisioning of cards into mobile and digital wallets (the 'Pays') for online an...
- **Cuscal Card Controls API** — CMS REST API letting cardholders and back-office staff control and restrict card usage - locking and unlocking cards and blocking certain transaction types to reduce fraud. Docu...
- **Cuscal PIN Services API** — CMS REST API providing self-service PIN set and change functionality that issuers can embed in mobile payment apps, removing reliance on PIN mailers. Documented on the Cuscal De...

## Security (1)

- **Cuscal Domain Security** — TLSv1.3 · HSTS · DMARC

## Tags

Payments, Australia, Card Issuing, Issuer Processor, Real-Time Payments, Acquiring, Open Banking, Consumer Data Right, Account-to-Account, Fraud, Banking as a Service

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/cuscal/). Scores are computed from the provider's own public artifacts under a published rubric.
