Merchant operations
Outpay Merchant Security: Wallets, Keys, and Checkout Operations
Protect Outpay payout wallets, dashboard sessions, API credentials, payment links, and merchant webhook configuration.
- Verify the payout wallet before publishing any link.
- Share only exact network and currency instructions: Base and USDC.
- Keep webhook secrets and API keys out of screenshots and support tickets.
- Require a second person to review wallet changes and live-key rotation.
- Fulfil an order only after a verified
checkout.paidevent or a server-side paid status. - Retain transaction hashes and checkout references for reconciliation.
- Never ask a customer to send additional funds to "unlock" a pending payment without an operator review.
Related documentation
- Payout wallet — the highest-impact change covered above.
- Team management — who should have access to sensitive actions.
- Developer security — the equivalent guidance for API integrators.
Outpay Team Management: Roles and Access Controls
Understand Outpay merchant team roles, dashboard access, invitations, and the current boundaries of team management in the beta.
Outpay Merchant Troubleshooting: Checkout and Webhook Issues
Diagnose common Outpay checkout, payout-wallet, transaction, API, and payment-webhook problems before escalating to support.