Secure Authentication

Bank-grade security for your integrations

API Keys

Simple bearer token authentication for server-side applications

  • Generate multiple keys
  • Rotate keys anytime
  • Separate sandbox/production keys

OAuth 2.0

Secure authorization for third-party applications

  • Authorization code flow
  • Refresh tokens
  • Granular scopes

Security Features

TLS 1.3 Encryption

All API requests encrypted in transit

Rate Limiting

Automatic protection against abuse

IP Whitelisting

Restrict API access to trusted IPs

Request Signing

HMAC signatures for added security

Audit Logs

Complete API access history

PCI DSS Compliant

Level 1 certified infrastructure

Authentication Example

// API Key Authentication
const response = await fetch('https://api.dunepay.com/v1/transactions', {
  headers: {
    'Authorization': 'Bearer sk_live_YOUR_API_KEY',
    'Content-Type': 'application/json'
  }
});