Recued
Menu
← Back to packs

Full Checkout, Orders, Settlements, and Disputes - Klarna

by recued-core v2 app_pack 6 views

V2 one-install Klarna front door over five bounded read feature packs and seven official embedded API documents. The visible compatibility root grows from 4 to 28 operations while preserving every established operation ID, route, argument, risk, approval, and cache contract. The audit removes one unaddressable legacy payment-session entity, corrects the order payment-method object, versions three repaired recipes at v2, and adds recursively closed requests plus lossless unsafe-integer responses. The installed family publishes 41 catalog operations covering 41 of 55 official routes; 14 binary, different-audience, multipart, or PCI/key-management routes fail closed. Root additions are action-only so the established read grant does not silently widen; 13 operations remain in version-pinned dependency packs. New money movement, loss acceptance, authorization release, and provider onboarding are destructive; every new mutation requires approval, documented Klarna-Idempotency-Key values are mandatory and caller-owned, and routes without a replay key are explicitly non-idempotent. JSON inputs are bounded, size/offset and dispute cursors walk only the same admitted route, Basic authorization stays connection-owned, and the family pins the official Europe live origin rather than exposing a caller-controlled host. The public docs expose complete schemas in server-rendered page data rather than stable raw URLs, so manifests omit misleading openapi_source fields while the generated fixture hash-locks all seven documents. No financial or control-plane object is claimed as a task, note, or project Source.

Trust & control

What installing this whole pack would let it do. Recued grants these permissions at install — review them there before approving.

What it's allowed to do

Destructive Web APIs klarna external change
Write: payment_session.create · Asks approvalRead: payment_session.read · No approvalWrite: payment_session.update · Asks approvalWrite: order.create · Asks approvalAdmin: customer_token.status.update · Always asksDestructive: customer_token.order.create · Always asksDestructive: dispute.loss.accept · Always asksAdmin: dispute.appeal · Always asksAdmin: dispute.represent · Always asksDestructive: dispute.merchant.enroll · Always asksDestructive: hosted_payment_session.disable · Always asksWrite: hosted_payment_session.create · Always asksWrite: hosted_payment_session.distribute · Always asksDestructive: managed_order.authorization.update · Always asksWrite: managed_order.capture.due_date.extend · Always asksAdmin: managed_order.customer_details.update · Always asksWrite: managed_order.merchant_reference.update · Always asksWrite: managed_order.acknowledge · Always asksDestructive: managed_order.cancel · Always asksDestructive: managed_order.capture.create · Always asksWrite: managed_order.capture.shipping_info.append · Always asksWrite: managed_order.capture.customer_communication.send · Always asksWrite: managed_order.authorization.extend · Always asksDestructive: managed_order.refund.create · Always asksDestructive: managed_order.authorization.release · Always asksWrite: managed_order.shipping_info.append · Always asksDestructive: authorization.cancel · Always asksWrite: customer_token.create_from_authorization · Always asks

Data it touches

SurfacesWeb APIs

About

Tags

pack:klarnaklarnapaymentscheckoutbnplordersapiv2compositionfull-apifeature-packscustomer-tokenshosted-payment-pageorder-managementcapturesrefundssettlementsreconciliationdisputes-v4