How it Works
Authentication
All API requests use the Bearer Token Authorization. See Authentication for details.
Identity Verification
The Zūm Rails platform features an integrated identity verification engine designed to meet strict Canadian regulatory requirements (FINTRAC). Our automated system collects, parses, and validates applicant data in real time, ensuring a frictionless transition from applicant to cardholder.
The onboarding interface is delivered as a secure, Zūm-hosted web experience. Partners can deploy this via two primary methods:
Hosted URL: Redirect applicants to a unique, Zūm-hosted landing page.
Embedded SDK: Use the Zūm Connect SDK to iframe the verification journey directly into your existing web or mobile application for a seamless "in-app" feel.
Zūm Rails collects the required information from the cardholder, including personal details and verification documents such as a valid government-issued ID, proof of address, or other supporting documentation.
See Zum Connect for integration details.
Onboarding & KYC Journey
Profile Setup & OTP: Applicants provide core contact details, including Legal Full Name, Email Address, and Phone Number. To ensure the authenticity of the contact data, Zūm Rails triggers a mandatory One-Time Password (OTP) verification via SMS or Email.
Comprehensive IDV & Occupation Declaration: Upon successful profile creation, the system initiates the Identity Verification (IDV) phase:
Address Collection: The verified residential address is automatically synchronized as both the Shipping Address for plastic issuance and the Billing Address for card transactions.
Government ID Upload: Collection of valid, non-expired government-issued identification.
Biometric Facial Match: A live "selfie" comparison against the provided ID to prevent spoofing.
Here’s a preview of the form used in Zūm Rails’ sample integration:

Your unique card onboarding URL/SDK
Navigate to Settings → Integration Codes.
For Hosted URL: Select the Embedded Codes tab. Locate the Card Onboarding banner to copy your production or sandbox URL.
"Enable Public URLs" checkbox needs to be checked for the hosted URL option to work
For SDK Implementation: Select the JavaScript SDK tab. Locate the Card Onboarding section to find your specific
ConnectTokenType:CardOnboardingconfiguration.
How to customize your card onboarding URL/SDK
Navigate to Settings → Brand Customization.
Visual Identity: Upload your brand logo and icon.
Available notifications and webhook
After the card applicant completes the card onboarding flow, based on your configuration and level of integration, if applicable, the following will occur: real-time status updates, webhook notifications, and user synchronization.
Customer
Notification of card application submitted, approved, under review, declined, and incomplete
Cardholder
Notification of card application submitted, approved, under review, declined, and incomplete
PrepaidCardUser
OnboardIncomplete
Webhook call for user that has completed profile setup but not KYC/IDV step
PrepaidCardUser
OnboardInProgress
Webhook call for user submitted card application
PrepaidCardUser
OnboardApproval
Webhook call for user KYC card application is approved and pending card issuance
PrepaidCardUser
OnboardUnderReview
Webhook call for user card application is under review
PrepaidCardUser
OnboardDeclined
Webhook call for user card application is declined
SecuredCardUser
OnboardIncomplete
Webhook call for user that has completed profile setup but not KYC/IDV step
SecuredCardUser
OnboardInProgress
Webhook call for user submitted card application
SecuredCardUser
OnboardApproval
Webhook call for user KYC card application is approved and pending card issuance
SecuredCardUser
OnboardUnderReview
Webhook call for user card application is under review
SecuredCardUser
OnboardDeclined
Webhook call for user card application is declined
Card Issuance
Upon receiving card application has passed the identify verification, a Partner and Customer can approve the card on the Zūm Rails portal on the Users page or with the Approve Card endpoint in the Users API. This endpoint is used when the identity verification process has been completed and the card applicant has passed verification.
Available notifications and webhooks
If you have the configuration, the following emails will be sent.
Customer
Notification of card is issued successfully
Cardholder
Notification of card is issued successfully
PrepaidCardUser
CardIssued
Webhook call for user’s card is issued successfully
SecuredCardUser
CardIssued
Webhook call for user’s card is issued successfully
Card Management
Display full card details
You can use our View Card Information SDK to display the sensitive data of your issued cards on your application.
Go to Settings → Integration Codes → JavaScript SDK to locate the View Card Information banner to find the ConnectTokenType: ViewCardInformation configuration.
Activate the users current card
Once your card has been approved or you created a new card, you need to activate the card to perform other card management activities. You can use the Activate Card endpoint in the Cards API to activate your user's card.
Available notifications and webhooks
Cardholder
Notification of card being activated
PrepaidCardUser
CardActivated
Notification of users card being activated
SecuredCardUser
CardActivated
Notification of users card being activated
Change the card program of a user's current card
Each card is assigned a card program ID which sets the overall transaction limitations, card artwork, and other program configurations. To change the card program attached to a user's card, call the Change Card Program endpoint in the Cards API. The card program ID you input must be an existing card program id listed under your Customer profile.
You can also do this on our portal through the user detail page.
Available notifications and webhooks
Cardholder
Notification that the users card has changed card programs
PrepaidCardUser
CardProgramChange
Webhook call for user updating their card program
SecuredCardUser
CardProgramChanged
Webhook call for user updating their card program
Get the balance on a user's current card
You can view a user's current card balance through the Get Balance Inquiry endpoint in the Cards API.
Get all cards attached to a user
You can view a user's cards through the Get Card endpoint in the Cards API.
Update the status on a user's current card
You can update the user’s current card status through our Set Card Status endpoint in the Cards API.
You can also do this through our portal on the View User Details page.
Available notifications and webhooks
Cardholder
Notification of what the card status is changed to
Update card profile
There are 3 different endpoints we have to update the card profile.
You can also do this through our portal on the users edit detail page.
Available notifications and webhooks
Cardholder
Notification of card profile updates (name, address, date of birth, occupation, phone number)
PrepaidCardUser
ProfileUpdate
Webhook call for user profile updates (name, address, date of birth, occupation, phone number)
SecuredCardUser
ProfileUpdate
Webhook call for user profile updates (name, address, date of birth, occupation, phone number)
Reissue card
If your user has an existing card and wants a new card, you can use the Reissue Card endpoint in the Card API to create a new card and attach it to your user. The old card will be detached from our database but you can still access the information via Get Card endpoint in the Cards API.
You can also do this through our portal on the users edit detail page.
Available notifications
Cardholder
Notification of new card being added
PrepaidCardUser
CardReissue
Webhook call for user’s card reissuance
SecuredCardUser
CardReissue
Webhook call for user’s card reissuance
Funding
For Prepaid Cards, you can add funds to the card from your Zūm Wallet via the Zūm Rails portal and Transaction API, or the cardholder can load funds through an applicable Zūm Rails payment method via the Card Funding Checkout SDK. You can unload funds back to your Zūm Wallet through the Zūm Rails portal.
Available notifications
Cardholder
Notification for transactions (Approved, Pending, Declined)
Security Deposit
For Secured Credit Card, you can add funds to the card from your Zūm Wallet via the Zūm Rails portal and Transaction API, or the cardholder can load funds through an applicable Zūm Rails payment method via the Card Funding Checkout SDK. You can unload funds back to your Zūm Wallet through the Zūm Rails portal.
Available notifications
Funding
For Prepaid Cards, you can add funds to the card from your Zūm Wallet via the Zūm Rails portal and Transaction API, or the cardholder can load funds through an applicable Zūm Rails payment method via the Card Funding Checkout SDK. You can unload funds back to your Zūm Wallet through the Zūm Rails portal.
Available notifications
Cardholder
Notification for transactions (Approved, Pending, Declined)
Last updated
Was this helpful?
