Skip to main content
You manage the Apple Pay session and merchant validation using your own Apple credentials. Cashfree provides the Payment Processing Certificate, so it can decrypt the payment token on your behalf. This option supports both app and web checkout.
No PCI DSS compliance is required for decryption. Cashfree handles the decrypted payment data on your behalf.

Prerequisites

Before implementing Apple Pay with this option, ensure you meet the following requirements.
  • Active Apple Developer Program membership.
  • Registered Apple Merchant ID.
  • HTTPS-enabled website or mobile application.
  • Valid SSL/TLS certificate.
  • Merchant Identity Certificate (web only), which you set up yourself.
  • Technical capability to implement the Apple Pay SDK.

Set up certificates with Apple and Cashfree

Complete the following setup process across your Apple Developer account and the Cashfree Merchant Dashboard.
1

Create Apple Merchant ID

  1. Log in to your Apple Developer account.
  2. Navigate to Certificates, Identifiers & Profiles > Identifiers.
  3. Select + to create a new Merchant ID.
  4. Select Merchant IDs and select Continue.
  5. Enter a unique identifier and description.
  6. Select Register to create your Merchant ID.
2

Download the CSR from the Cashfree Merchant Dashboard

  1. Log in to the Merchant Dashboard.
  2. Navigate to Settings > Payment Methods > Apple Pay.
  3. Select Custom Checkout > Cashfree Decrypts > I have my own Apple Developer Account.
  4. Select Download CSR. Cashfree generates a unique CSR for your merchant account.
3

Upload the CSR to Apple and download the signed certificate

  1. In your Apple Developer account, navigate to your Merchant ID settings.
  2. Find Apple Pay Payment Processing Certificate > Create Certificate.
  3. Upload the CSR file downloaded from the Merchant Dashboard.
  4. Download the signed certificate (.cer file) from Apple.
4

Upload the signed certificate to the Cashfree Merchant Dashboard

  1. Return to the Merchant Dashboard.
  2. Upload the signed .cer file.
  3. Cashfree validates the certificate and activates Apple Pay for your account.
5

Set up the Merchant Identity Certificate (web only)

  1. In your Merchant ID settings on the Apple Developer portal, find Apple Pay Merchant Identity Certificate.
  2. Select Create Certificate.
  3. Generate a CSR using OpenSSL:
  1. Upload the CSR to Apple, and download the signed certificate (.cer file).
  2. Install the Merchant Identity Certificate on your server. It is used for two-way TLS with Apple during merchant validation.
6

Register your domain (web only)

  1. In your Merchant ID settings on the Apple Developer portal, navigate to Merchant Domains.
  2. Add your checkout domains where you want to accept Apple Pay as a payment option.
  3. Download the domain verification file from Apple.
  4. Host the file at this exact path on your domain:
  1. Select Verify in the Apple Developer portal to register the domains with Apple.

Implement Apple Pay on web and iOS

Implement Apple Pay using the following steps, depending on your platform.
Implement Apple Pay in your web application using the following JavaScript steps:
1

Check Apple Pay availability

2

Load the Apple Pay button

3

Create the payment request and initiate the session

4

Handle merchant validation

Your server calls Apple’s merchant session API directly, using your own Merchant Identity Certificate over a two-way TLS connection.
5

Handle payment authorisation

After the customer authenticates with Face ID or Touch ID, Apple Pay fires the onpaymentauthorized event with the encrypted payment token. Pass the encrypted token to your server, then call the Cashfree Authorisation Only API with the encrypted data. Cashfree decrypts it and processes authorisation on your behalf.

Decryption and authorisation via Cashfree

Pass the encrypted payment object received from Apple Pay to process the payment with Cashfree using the Authorisation Only API. Cashfree decrypts it and processes authorisation on your behalf.