Pine Labs Online P3P Server SDK (Python)
Python SDK for Pine Labs Online P3P server integrations. It mirrors
p3p-server-sdk, creates mandates, generates HTTP 402
payment challenges, verifies client credentials, captures payments through P3P,
and builds Payment-Receipt headers.
Installation
pip install pinelabs-online-p3p-server-sdk[flask]
pip install pinelabs-online-p3p-server-sdk[fastapi]
Import module: pinelabs_p3p_server. Requires Python 3.9 or newer.
Config
from pinelabs_p3p_server import (
P3PEnvironment,
PaymentGateway,
PaymentMethod,
PineLabsOnlineServerConfig,
)
config = PineLabsOnlineServerConfig(
clientId="...",
clientSecret="...",
env=P3PEnvironment.SANDBOX,
paymentGateway=PaymentGateway.PineLabsOnline,
availablePaymentMethods=[PaymentMethod.RESERVE_PAY, PaymentMethod.OTM, PaymentMethod.CARD],
)
clientId and clientSecret are used internally for POST /api/auth/v1/token.
The local challenge HMAC key is derived internally from clientSecret with a
stable SDK prefix, so there is no separate challenge-signing config field.
The SDK caches and refreshes bearer tokens before expiry. env selects the
Pine Labs host used for auth and /mpp/v1/* service calls.
Environment defaults:
| Env | URL | Timeout | Retries | Initial retry delay |
|---|---|---|---|---|
P3PEnvironment.SANDBOX |
https://pluraluat.v2.pinepg.in |
60000 ms | 2 | 300 ms |
P3PEnvironment.PRODUCTION |
https://api.pluralpay.in |
45000 ms | 2 | 200 ms |
Mandates
from pinelabs_p3p_server import Amount, CreateMandateOptions, CreatePreAuthorizationOptions, PineLabsOnlineP3P
p3p = PineLabsOnlineP3P.create(config)
mandate = p3p.create_mandate(CreateMandateOptions(
mobileNumber="9876543210",
customerReference="9876543210",
amount=Amount(value=100000, currency="INR"),
paymentMethod=PaymentMethod.RESERVE_PAY,
validityInDays=20,
))
This maps to POST /mpp/v1/pre-authorize and sends
customer.mobile_number.
Card pre-authorization uses the same endpoint and returns the service contract shape directly:
pre_authorization = p3p.create_pre_authorization(CreatePreAuthorizationOptions(
paymentMethod=PaymentMethod.CARD,
mobileNumber="9876543210",
amount=Amount(value=1000, currency="INR"),
validityInDays=7,
description="Card pre-auth for order-123",
))
print(pre_authorization.payment_method_reference_id)
# `challenge_url` / `redirect_url` points at the hosted checkout where the
# customer completes 3DS / card authorization. Open it in an iframe or
# redirect the customer to it, then wait for the mandate to become ACTIVE
# before capturing.
print(pre_authorization.redirect_url or pre_authorization.challenge_url)
End-to-End Card Payment
The full CARD flow uses payment_method_reference_id returned by
create_pre_authorization to link the eventual debit back to the customer's
authorized card:
import time
# 1. Create a card pre-authorization (customer completes the hosted checkout).
pre_auth = p3p.create_pre_authorization(CreatePreAuthorizationOptions(
paymentMethod=PaymentMethod.CARD,
mobileNumber="9876543210",
amount=Amount(value=50000, currency="INR"),
validityInDays=7,
))
# 2. Direct the customer to the checkout URL (iframe or redirect).
checkout_url = pre_auth.redirect_url or pre_auth.challenge_url
# 3. Poll the mandate until it becomes ACTIVE.
mandate = p3p.get_mandate(pre_auth.payment_method_reference_id)
while mandate.payment_status != "ACTIVE":
time.sleep(2)
mandate = p3p.get_mandate(pre_auth.payment_method_reference_id)
# 4. Charge the card via the standard 402 flow. The Server SDK issues a
# Payment challenge and, once the Client SDK returns a Payment credential
# that carries a token bound to this pre-auth, calls POST /mpp/v1/debit
# with `payment_method_reference_id=pre_auth.payment_method_reference_id`.
On the client side, the Client SDK creates the payment token with
paymentMethod=PaymentMethod.CARD — see the Client SDK README for the
matching runtime context.
Paid Resource Flow
from flask import Flask, jsonify
from pinelabs_p3p_server import Amount, ChargeOptions
from pinelabs_p3p_server.flask_mw import payment_required
app = Flask(__name__)
@app.get("/api/premium")
@payment_required(config, ChargeOptions(
amount=Amount(value=50000, currency="INR"),
resource="/api/premium",
))
def premium():
return jsonify({"data": "premium content"})
The middleware reads P3P-Credential: Payment <payload>, not Authorization,
so it does not conflict with application bearer auth.
Capture
from pinelabs_p3p_server import CaptureOptions
result = p3p.capture(CaptureOptions(
token="MPP_TOK_123",
amount=Amount(value=50000, currency="INR"),
paymentMethod=PaymentMethod.RESERVE_PAY,
customerReference="9876543210",
mobileNumber="9876543210",
challengeId="ch_123",
merchantOrderReference="order-123",
))
The debit body uses customer.mobile_number, payment_amount,
payment_token, and challenge_id. The SDK sends Idempotency-Key and does
not send Merchant-ID.
If /mpp/v1/debit returns 202 Accepted, the SDK treats that as an
accepted-but-processing debit. It does not re-POST /mpp/v1/debit — Pine
Labs rejects a resubmit with the same Idempotency-Key (422). Instead the
SDK resolves the terminal status by polling the read-only endpoint
GET /mpp/v1/debit/{id}:
- polls up to
maxRetriestimes until the debit reaches a terminal status - respects
Retry-Afterfrom the202response when Pine Labs returns it - falls back to
initialRetryDelayMsotherwise - genuine transient failures on the initial POST (network errors, HTTP 429, and 5xx) are still retried by the SDK's request layer
If the poll budget is exhausted and the debit is still non-terminal, the SDK
returns a pending result (with idempotencyKey) and the middleware should
return 202 without serving the protected resource. Application code can
reconcile later via p3p.get_debit_status(idempotency_key).
Generic Middleware Helper
from pinelabs_p3p_server.server.middleware import decide_payment
decision = decide_payment(
credential_header=request.headers.get("P3P-Credential"),
config=config,
charge_options=ChargeOptions(
amount=Amount(value=50000, currency="INR"),
resource="/api/premium-data",
),
)
To reconcile a pending debit later, use the status lookup helper:
latest = p3p.get_debit_status("idem_key_123")
This calls GET /mpp/v1/debit/{id} and returns the same debit payload family
as the original debit call, so application code can resolve pending payments by
idempotency key.
License
MIT
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file pinelabs_online_p3p_server_sdk-1.0.0.tar.gz.
File metadata
- Download URL: pinelabs_online_p3p_server_sdk-1.0.0.tar.gz
- Upload date:
- Size: 44.5 kB
- Tags: Source
- Uploaded using Trusted Publishing? No
- Uploaded via:
twine/7.0.0 CPython/3.14.4
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
b693080190d751dd9ae4024f3f0c8a2245a438c5cd0a604a2dfe9342dff26abc
|
|
| MD5 |
75116d045c7a3c49a54007beaa13f04d
|
|
| BLAKE2b-256 |
93d7eed85caf89a7a548f29afdf2689cc7fe12151bfaf8d1696323f0da1992eb
|
File details
Details for the file pinelabs_online_p3p_server_sdk-1.0.0-py3-none-any.whl.
File metadata
- Download URL: pinelabs_online_p3p_server_sdk-1.0.0-py3-none-any.whl
- Upload date:
- Size: 46.3 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? No
- Uploaded via:
twine/7.0.0 CPython/3.14.4
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
5998fd44057ac1333c937b9717b64265ebc03f0a41b3a28ebed454cf332f1030
|
|
| MD5 |
002f27a00ea2716de4c1d4763e3455d1
|
|
| BLAKE2b-256 |
76c2d0c26a7f28a1e6d5232f9c803c63ae9bf5103033050561a5636945404ced
|