origin_not_allowed
The key is restricted to another domain.
| HTTP status | type | Retry the same request? |
|---|---|---|
| 403 | permission_error | no |
Why it happens
Your connected app has “Restrict browser API access” switched on, and the request came from a browser page on a different domain.
What to do
Call the API from your server, or from the app's own domain.
Example response
{
"error": {
"type": "permission_error",
"code": "origin_not_allowed",
"message": "A human-readable explanation. Do not parse it.",
"doc_url": "https://docs.skanpay.website/errors/origin_not_allowed",
"request_id": "req_01J9Z3K8Q4W6XK2M7N5P0R3T8V"
}
}