> ## Documentation Index
> Fetch the complete documentation index at: https://docs.signsealship.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Mint a checkout session

> Mint the Stripe hosted-checkout URL for a payable order. Minting never changes order state — state advances only via the verified Stripe webhook after payment clears. Rate limited with `partner-write` (60/min per key).



## OpenAPI

````yaml /api-reference/openapi.json post /api/partner/orders/{code}/checkout
openapi: 3.1.0
info:
  title: SignSealShip Partner API
  version: 1.0.0
  description: >-
    The SignSealShip partner API: create sign / notarize / ship orders, create
    Verified Closing Rooms, seal Closing Passports and Proof Passports, and
    manage webhooks. Partner endpoints authenticate with a bearer key
    (`Authorization: Bearer sss_pk_...`); public verification endpoints need no
    key — possession of the verify, room, or order code is the authorization.
    See the Guides for full prose, rate limits, and signature verification.
  contact:
    name: SignSealShip
    url: https://signsealship.com/partner
servers:
  - url: https://signsealship.com
    description: Production
security:
  - partnerKey: []
tags:
  - name: Onboarding
    description: Request partner API access.
  - name: Orders
    description: >-
      B2B order intake — create sign / notarize / ship orders, track them, and
      mint Stripe hosted checkout.
  - name: Sandbox
    description: >-
      Deterministic lifecycle simulation for TEST orders (sss_pk_test_ keys) —
      real state machine, real signed webhooks, no live money.
  - name: Launchpad & Analytics
    description: Your workspace's go-live checklist and tenant-scoped analytics.
  - name: Closing Rooms
    description: Verified Closing Rooms — one shareable page per transaction.
  - name: Closing Passports
    description: Room-level, hash-chained, KMS-sealed evidence manifests.
  - name: Proof Passport
    description: Seal and verify a single executed PDF.
  - name: Webhooks
    description: Signed event delivery and subscription management.
paths:
  /api/partner/orders/{code}/checkout:
    post:
      tags:
        - Orders
      summary: Mint a checkout session
      description: >-
        Mint the Stripe hosted-checkout URL for a payable order. Minting never
        changes order state — state advances only via the verified Stripe
        webhook after payment clears. Rate limited with `partner-write` (60/min
        per key).
      parameters:
        - $ref: '#/components/parameters/OrderCode'
        - $ref: '#/components/parameters/IdempotencyKey'
      responses:
        '200':
          description: Checkout session minted.
          content:
            application/json:
              schema:
                type: object
                properties:
                  checkoutUrl:
                    type: string
                    description: The Stripe hosted-checkout URL to hand to the payer.
                  requestId:
                    type: string
                    description: This request's id — quote it in support tickets.
        '401':
          $ref: '#/components/responses/Unauthorized'
        '404':
          description: >-
            Unknown code — or another partner's order; the two are
            indistinguishable.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '409':
          description: >-
            The order is not payable in its current state (for example, awaiting
            a manual quote).
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '502':
          description: Stripe failed to create the session.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
        '503':
          description: Payments are not configured.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Error'
components:
  parameters:
    OrderCode:
      name: code
      in: path
      required: true
      schema:
        type: string
      description: The order's public code from the create response.
    IdempotencyKey:
      name: Idempotency-Key
      in: header
      required: false
      schema:
        type: string
        minLength: 8
        maxLength: 255
      description: >-
        Optional. Retries carrying the same key replay the original response
        instead of acting twice. 8–255 characters; scope one key to one logical
        action.
  responses:
    Unauthorized:
      description: Missing, malformed, revoked, or unknown partner key.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/Error'
          example:
            error: A valid partner API key is required.
  schemas:
    Error:
      type: object
      properties:
        error:
          type: string
  securitySchemes:
    partnerKey:
      type: http
      scheme: bearer
      bearerFormat: sss_pk_...
      description: 'Partner API key. Send as `Authorization: Bearer sss_pk_...`.'

````