APIs are the connective tissue of your payments business-linking apps, merchants, issuers, and processors.
The Reserve Bank of India's Master Directions on Cyber Resilience and Digital Payment Security Controls for non-bank PSOs (July 30, 2024) recognise this reality and explicitly call out API Security across four pillars:
Feature | RBI Requirement | How Rakuten SixthSense does it |
|---|---|---|
Authentication & | PSOs must establish identity of users and communicating applications (microservices, third party apps) accessing API |
|
Confidentiality – ensure | PSOs must ensure confidentiality of API message content |
|
Integrity – resources are | PSOs must ensure integrity of message content during transfer and reliable/accurate transfer of resources (data/transactions) |
|
Availability & Threat | APIs available for legitimate use; anomalous activities identified & mitigated |
|
Alignment to | PSO shall adhere to relevant standards and globally recognised frameworks on API security |
|








API threats within minutes
Just add your public API or URL. No integration needed.