Best Practices

DOCS

Last updated: Aug 15th, 7:28am

General

  • When you create your REST app, use a corporate email address.
  • Do not store full card numbers, account numbers, or any other sensitive data in your logs.
  • Securely store PayPal API credentials and retrieved tokens. Use PayPal refresh and access tokens only in a secure, partner-controlled environment.

Co-branding

  • Create a PayPal app with a meaningful business or display name. This display name is shown in all interactions with the user. It should reflect your company's brand name.
  • Review the PayPal-hosted, co-branded onboarding experience to make sure your brand is accurately reflected.

Client ID

  • Review the scopes associated with your client ID and make sure the consent language presented to the user reflects your intent.
  • Verify the scopes associated with your client ID from the response of the PayPal first party identity call.
  • Define the redirect URIs for your client ID on the HTTPS protocol. You can direct the user to any defined redirect URI.
  • After you create a REST app for the live or sandbox environment, email the client ID for that app to your PayPal integration team. The team provisions your client ID with the correct scopes and settings. The team needs at least two weeks to complete this task.

Support

  • To help PayPal Support debug issues, log the PayPal-Debug-ID and the referral ID.
  • For more information about PayPal Link, contact PayPal Global Professional Services.