LogoLogo
Explore with DeepWikiJoin Slack CommunityContact Us
  • About Hyperswitch
    • Exploration Guide
    • Overview
    • Payments Suite
    • Payments Modules
      • Cost Observability
      • Revenue Recovery
      • Vault
        • Server to Server Vault tokenization
        • Vault SDK Integration
        • Hyperswitch Vault: Pass Through Proxy Payments
      • Intelligent Routing
        • Auth Rate Based Routing
        • Self-Deployment Guide
      • Reconciliation
        • Getting Started with Recon
      • Alternate Payment Method Widgets
        • Hyperwidget Integration Guide
    • Roadmap - Q2 2025
      • Previous Roadmap - Q1 2025
      • Previous Roadmap - Q4 2024
      • Previous Roadmap - Q3 2024
      • Previous Roadmap - Q2 2024
      • Previous roadmap - Q1 2024
      • Previous roadmap - Q4 2023
  • Use-Cases
    • For SaaS Businesses
    • For B2B SaaS Businesses
    • For E-Commerce Businesses
    • For Marketplace/Platforms
  • Explore Hyperswitch
    • Payment Orchestration
      • Accept Payments
        • Connectors
          • Activate Connector on Hyperswitch
          • Try a Payment
          • Available Connectors
            • ACI
            • Adyen
            • Airwallex
            • Authorizedotnet
            • Bambora
            • Bank of America
            • Billwerk
            • Bluesnap
            • Braintree
            • Checkout
            • Coinbase
            • Cybersource
              • Apple Pay
              • Google Pay
            • dLocal
            • Fiserv
            • GlobalPayments
            • GoCardless
            • Klarna
            • Mollie
            • MultiSafepay
            • Nuvei
            • OpenNode
            • Paypal
            • PayU
            • Prophetpay
            • Rapyd
            • Shift4
            • Stripe
            • TrustPay
            • Volt
            • Worldline
            • Worldpay
            • Zen
            • Netcetera
              • Authenticating Payments via Netcetera Through HyperSwitch SDK
        • Setup Payment Methods
          • Cards
          • Wallets
            • Apple Pay
              • Web Domain
              • iOS Application
            • Google Pay
            • PayPal
            • Samsung Pay
          • Pay Later
          • Banks
            • Bank Debits
            • Bank Redirects
            • Bank Transfers
            • Open Banking
          • Crypto
          • Test Credentials
        • Payment Links
          • Configurations
          • Create Payment Links
          • Secure Payment Links
          • Setup Custom Domain
        • Save a Payment Method
        • Manual Capture
        • Incremental Authorization
        • Tokenization & Card Vault
          • Network Tokenisation
        • Supported Payment Workflows
        • Co-badged Cards
        • Webhooks
      • Process Payouts
        • Getting Started with Payouts
        • Using Saved Payment Methods
        • Smart Router for Payouts
        • Smart Retries in Payout
        • Payout Links
      • Smart Routing
        • Rule Based Routing
        • Volume Based Routing
        • Default Fallback Routing
        • Least Cost Routing
      • Smart Retries
        • 3DS Step-up Retries
      • 3DS / Strong Customer Authentication
        • Setting up 3DS Decision Manager
        • Native 3DS Authentication
        • External Authentication for 3DS
      • Fraud & Risk Management
        • Activating FRM in Hyperswitch
        • Fraud Blocklist
      • Subscriptions
        • PG Agnostic Card Forwarding
        • Zero Amount Authorization
      • Split Payments
        • Stripe Split Payments
        • Adyen Split Payments
        • Xendit Split Payments
    • Checkout Experience
      • Customizable and Native Integrations
        • Web
          • Node And React
          • Customization
          • Error Codes
          • Node and HTML
          • Vanilla JS and REST API Integration
        • Android
          • Kotlin with Node Backend
          • Customization
          • Features
        • iOS
          • Swift with Node Backend
          • Customization
          • Features
        • React Native
          • React Native with Node Backend
          • Card Widget
          • Customization
        • Flutter
          • Flutter with Node Backend
          • Customization
        • Headless SDK
        • Server Setup
      • Click To Pay
        • Visa Click to Pay: V1 to V2 Migration
      • Payment Methods Management
    • Payment Operations
      • Managing Accounts and Profiles
        • ⚙️Control Centre Account setup
        • Hyperswitch Account Structure
      • Manage Your Team
      • Analytics & operations
        • Exporting payments data
      • Disputes / Chargebacks
      • Surcharge
        • Surcharge Setup guide
      • Multi-Tenancy
      • Data migration
        • Import data to Hyperswitch
        • Export data from Hyperswitch
    • Security and Compliance
      • PCI Compliance
      • Data Security
      • GDPR compliance
      • Identity and Access Management
    • E-commerce Platform Plugins by Hyperswitch
      • 🔌WooCommerce Plugin
        • Setup
        • Roadmap
        • Compatibility
        • FAQs
      • Saleor App
        • Setup
      • Automatic Tax calculation for Express Checkout wallets
  • Hyperswitch open source
    • Overview
      • Run Hyperswitch Locally Using Docker
        • Run Additional Services
      • Development Environment Setup
        • Backend
          • Configure and Run the Application
          • Try out APIs
        • SDK (Frontend)
        • Control Center
    • Deploy on AWS
      • Deploy on AWS using CloudFormation
      • Component-wise Deployment
        • Deploy app server
        • Deploy Control Center
        • Deploy web client
          • Production ready deployment
          • Integrate web client on your web app
          • Playground deployment for prototyping (optional)
        • Deploy Card Vault
          • Production ready deployment on AWS
          • Cloud setup guide
    • Deploy on Kubernetes
      • Deploy on GCP Using Helm Charts
      • Deploy on Azure Using Helm Charts
      • Deploy on Local using Helm Charts and Minikube
    • Account setup
      • Using Hyperswitch Control Center
      • Test a payment
      • Using postman
    • Troubleshooting
  • Testing Payments
  • Check list for Production
    • Going live
      • For SaaS Setup
      • For On-Prem Setup
        • Monitoring
        • PCI compliance
          • Get started
          • Completing the SAQ
        • Data Security
        • Updates
  • Learn more
    • API Reference
    • Connectors Supported
    • SDK Reference
      • React
      • JS
      • Custom Events
    • Hyperswitch architecture
      • Router
      • Storage
      • A Payments Switch with virtually zero overhead
    • Payment flows
    • Blog
  • Community Guidelines
Powered by GitBook

Compliance

  • Vulnerability Disclosure
  • PCI DSS 4.0
  • ISO 27001:2022

Community

  • Slack
  • Discord
  • GitHub Discussion
On this page
  • Why Hyperswitch Vault?
  • How does it work?
  • How to Integrate Vault?
  • Using Vault for Proxy-Based Payments

Was this helpful?

  1. About Hyperswitch
  2. Payments Modules

Vault

Hyperswitch Vault Service is a standalone vault that allows you to tokenize and secure your customers' card data in our PCI-compliant vault without having to use our payment solutions.

With Hyperswitch Vault, you can:

  • Use our PCI-compliant Vault SDK to collect and store card data securely, ensuring sensitive information never touches your systems.

  • Tokenize cards across multiple payment processors through a single unified API.

  • Generate Network Tokens to optimize payment operations and reduce costs with automatic network token creation and updates, powered by Juspay’s certified Network Token Requestor capabilities.

Why Hyperswitch Vault?

Seamless and Universal Tokenization

  • Universal PSP Tokenization – Store card data once and tokenize it instantly across 50+ payment providers.

  • Network Token Management – Increase transaction success rates and reduce interchange fees with automatic network tokenization.

  • Customizable Vault SDK – Securely collect card details with ready-to-use UI components.

  • Flexible Token Generation – Supports both single-use and multi-use tokens for various payment scenarios.

Security and Compliance – Zero Maintenance

  • PCI DSS v4.0 Certified – Industry-leading payment security compliance.

  • ISO 27001:2022 Certified – Global standard for information security management.

  • GDPR Compliant – Ensures full compliance with EU data protection regulations.

  • SOC 2 Type II Compliant – Stringent security controls for enterprise-grade safety.

  • 256-bit AES Encryption – Bank-grade encryption to protect stored data.

Enterprise-Grade Performance

  • 99.999% Uptime SLA – Highly reliable service availability.

  • Scales to 50,000 Transactions Per Second (TPS) – Designed for high-volume transactions.

  • Sub-50ms Response Time – Optimized for ultra-fast token generation and retrieval.

Proxy Payments support for PCI compliance

  • No PSP re-integration needed - Use tokens stored in Vault to make direct API calls to PSPs. Hyperswitch intercepts, detokenizes, and securely forwards requests—no need to modify existing PSP integrations or handle raw card data

  • PCI DSS scope reduction – Raw card data stays within Vault

  • Centralized token management – One vault, many PSPs

How does it work?

1. Initial Vault Setup

  • The merchant server sends a vaulting request with tokenization preferences.

  • The Vault server responds with a secure session ID and client secret.

  • All communication is protected with end-to-end encryption.

2. Secure Card Capture

  • The Vault SDK is initialized with merchant credentials and session details.

  • Customers enter their card details using secure SDK components.

  • Card data is transmitted directly to the Vault server, ensuring it never touches merchant systems.

3. Vault Storage and Primary Tokenization

  • Card data is encrypted using bank-grade encryption and stored in a PCI-compliant vault infrastructure.

  • A unique vault token is generated as the primary reference for future transactions.

4. PSP and Network Token Generation

  • Automated PSP-specific token creation on demand.

  • Network tokens are generated where supported (Visa, Mastercard).

  • Intelligent token mapping and lifecycle management ensure seamless token utilization.

  • Continuous monitoring and automatic token updates improve security and reliability.

5. Flexible Payment Processing

  • Use vault tokens directly with PSP endpoints or through Hyperswitch.

  • Supports recurring, one-time, and marketplace payments.

  • Real-time token status tracking and updates.

  • Automatic card updates and network token refreshes.

How to Integrate Vault?

Hyperswitch Vault offers integration options tailored to different security and compliance needs.

For Non-PCI Compliant Merchants

  • Collect card details without handling sensitive data.

  • Maintain full PCI compliance without additional certification.

For PCI Compliant Merchants

  • Securely send card data from your own infrastructure while maintaining existing security workflows.

Using Vault for Proxy-Based Payments

  • Hyperswitch intercepts requests, detokenizes on the fly, and securely forwards them—no changes needed to existing PSP integrations.

Last updated 21 days ago

Was this helpful?

Quickly integrate the secure Vault SDK -

Direct server-to-server integration for greater control -

Send payments to PSPs using Vault tokens without handling raw card data -

Learn how to
Learn how to
Learn how to
Intelligent Routing