{"contractVersion":1,"product":"prepaid_travel_esim","seller":"Freeland","description":"Prepaid travel eSIMs sold to agents for native USDC on Base through x402.","catalog":{"url":"https://api.x402card.org/api/esim/plans","filters":["countryCode","type"],"dynamic":true,"instruction":"Read the live catalog immediately before selecting or paying for a plan."},"readiness":"https://api.x402card.org/api/esim/ready","discovery":"https://api.x402card.org/api/esim/discovery","directPurchase":{"method":"POST","url":"https://api.x402card.org/api/esim/purchase","authentication":"x402_payment_payer","input":{"planId":"optional live plan id; omit to select the cheapest currently available plan","idempotencyKey":"required before submitting PAYMENT-SIGNATURE; reuse after ambiguous responses"},"payerBecomesOwner":true,"returnsOrderDeliveryCapability":true,"inlineFulfillmentWaitMs":15000,"cardRequired":false,"paymentSubmissionsMaxPerAttempt":1},"payment":{"protocol":"x402","version":2,"scheme":"exact","network":"eip155:8453","asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","challengeHeader":"PAYMENT-REQUIRED","paymentHeader":"PAYMENT-SIGNATURE","settlementHeader":"PAYMENT-RESPONSE"},"continuation":{"primaryAccess":"Use credentials from the paid response when present. Otherwise preserve delivery.token and send it as X-Esim-Delivery-Token to the continuation URLs.","capabilityScope":"single eSIM order only","capabilityTtlDays":30,"walletAuthenticationFallback":"POST /api/auth/challenge, then POST /api/auth/verify with the payer wallet","pollOrder":"GET /api/esim/orders/:orderId","retrieveCredentials":"GET /api/esim/orders/:orderId/credentials","credentialsPolicy":"owner-only, private, no-store"},"safety":["Never provide a seed phrase or private key","Verify the live plan and exact 402 requirements before signing","After an ambiguous payment response, poll the same order and do not submit another payment","Treat the order delivery token like a private credential; never log, publish, or send it to another user","Do not expose QR, LPA, ICCID, or installation links outside the authenticated owner channel"]}