One REST API
Auth, idempotency keys, rate limiting, cursor pagination, a consistent error envelope, and versioned endpoints. Test and live modes are separated by API-key prefix.
API-first virtual card issuing
AdvoPay is a distribution layer over SunRate’s Commercial Cards API. You integrate one REST API — authentication, idempotency, wallets, spend controls, billing — and we hold the single SunRate / Mastercard relationship behind you.
Built for businesses · Virtual cards · USD · Onboarding is subject to KYB review. Not a business? Sign up as an individual.
A single, well-documented REST API for programmatic virtual-card issuing, funded by a prefunded USD wallet. Cards are issued by Sunrate Pte. Ltd., a MAS-licensed Major Payment Institution and Mastercard principal member; AdvoPay provides the API, wallet accounting, spend controls, and billing on top.
Auth, idempotency keys, rate limiting, cursor pagination, a consistent error envelope, and versioned endpoints. Test and live modes are separated by API-key prefix.
Top up your wallet by wire using a reference code we issue you. Card loads and spend draw against your wallet balance, tracked in our double-entry ledger.
Set per-card and cumulative caps and an MCC allowlist at issuance. Overspend is detected and clawed back within one reconciliation cycle — see the note below on how controls work.
Each account operates under its own API key with its own wallet, cards, and billing — cleanly isolated from every other account.
Sensitive card data is revealed through a hosted, PCI-compliant vault element in the end-user’s browser. Your servers and ours never see the raw PAN or CVV.
Signed webhooks for authorization and clearing events, backed by a reconciliation engine that keeps the ledger and the issuer in agreement.
Submit your business details and identity documents. We review your application; there is no instant approval.
Once approved, we activate your account, issue your reference code, and provision your first API key.
Wire funds quoting your reference code. Your wallet is credited once the transfer is confirmed.
Call the API to create cardholders and virtual cards, set spend controls, and reconcile spend.
Usage-based: a per-card issuance fee plus one spend markup. Figures below are indicative and subject to change pending final terms.
$0/mo
$499/mo
$1,999/mo
Let’s talk
Indicative pricing. Final rates depend on SunRate’s cost basis and your KYB outcome. Multi-currency, FX, and physical cards are on the roadmap and not part of the current offering.
Our market and regulatory anchor is Singapore. Personal data is handled under the PDPA.
Cardholders are screened against consolidated sanctions lists (OFAC / UN / EU / MAS) before any card is issued.
Card data is handled in a hosted PCI vault; raw PAN/CVV never touch your systems or ours.
Every business is verified before activation. Applications are reviewed, not auto-approved.