Verify Card Security Code

Use the Verify Card Security Code endpoint to validate a CVV for the specified card that a cardholder inputs. Returns success on a match or failure if it does not match. This endpoint does not return the CVV.

Status codes

See Global Response Statuses for status codes that are common across endpoints.

The table below lists status codes that apply to this specific endpoint.

Status codeDescription
440-01Card security code does not match.
440-02Card not found using PAN and expiry date.
440-03No matching card(s) found.
440-04System error
440-05System error
Form Data
string
required

Web service username, as provided by SoFi Tech Solutions.
Pattern: Max 50 characters
Example: "AbC123-9999"

string
required

Web service password, as provided by SoFi Tech Solutions.
Pattern: Max 15 characters
Example: "4sb62fh6w4h7w34g"

string
required
1 to 60

Supply a globally unique ID to identify this endpoint request ("transaction"). Might be used for idempotency.. A UUID is preferred.
Pattern: Maximum 60 characters
Example: "9845dk-39fdk3fj3-4483483478"

string
required
^[0-9]{16}$

PAN of the card.
Pattern: 16 digits
Example: "1435074103447228"

string
required
^[0-9]{3}$

The CVV value provided by the cardholder. This value is compared to the CVV in the system.
Pattern: 3 digits
Example: "123"

string | null
^(19|20)\d\d-(0[1-9]|1[012])$

The expiry date provided by the cardholder. This value is compared to the expiry date in the system.
Pattern: YYYY-MM
Example: "2019-01"

Headers
string
enum
Defaults to json

Use this header instead of the standard accept header to specify the response format.

Allowed:
Response

Language
URL
LoadingLoading…
Response
Click Try It! to start a request and see the response here! Or choose an example:
application/json

© SoFi Technology Solutions, LLC 2026    Privacy Disclosure

All documentation, including but not limited to text, graphics, images, and any other content, are the exclusive property of SoFi Technology Solutions, LLC and are protected by copyright laws. These materials may not be reproduced, distributed, transmitted, displayed, or otherwise used without the prior written permission of SoFi Technology Solutions, LLC. Any unauthorized use or reproduction of these materials are expressly prohibited.