aid: westpac url: https://raw.githubusercontent.com/api-evangelist/westpac/refs/heads/main/apis.yml name: Westpac Banking Corporation kind: company description: Westpac Banking Corporation is Australia's oldest bank and company, founded in 1817 as the Bank of New South Wales, and is one of the country's "Big Four" banks. Headquartered in Sydney, it is a publicly listed company on the Australian Securities Exchange (ASX:WBC), not a customer-owned mutual, and operates a multi-brand group that includes St.George, BankSA, Bank of Melbourne, and RAMS. As an authorised deposit-taking institution (ADI) regulated by APRA, Westpac is a designated data holder under Australia's Consumer Data Right (CDR / Open Banking) regime and exposes a public, unauthenticated Product Reference Data (PRD) API conforming to the DSB Consumer Data Standards. Consumer and account data sharing beyond product reference data is available only to accredited data recipients through the CDR's authenticated, consent-driven channels. image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg tags: - Financial - Banks - Open Banking - CDR - Consumer Banking - Australia - Product Reference Data - ADI created: '2026-07-20' modified: '2026-07-21' specificationVersion: '0.19' apis: - aid: westpac:westpac-cdr-product-reference-data-api name: Westpac Banking Corporation CDR Product Reference Data API tags: - CDR - Open Banking - Product Reference Data - Banking - Australia image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg humanURL: https://www.westpac.com.au/about-westpac/innovation/open-banking/product-api/ baseURL: https://digital-api.westpac.com.au/cds-au/v1/banking/products properties: - url: https://www.westpac.com.au/about-westpac/innovation/open-banking/product-api/ type: Documentation - url: https://consumerdatastandardsaustralia.github.io/standards/ type: APIReference - url: openapi/westpac-cds-banking-openapi.yml type: OpenAPI description: PUBLIC, unauthenticated Product Reference Data (PRD) surface exposing Westpac's banking product catalogue (rates, fees, features, eligibility) under Australia's Consumer Data Right. Covers the DSB Get Products (/banking/products) and Get Product Detail (/banking/products/{productId}) contract, served at the confirmed live host digital-api.westpac.com.au and honouring x-v versions 4 and 5 (calls without a supported x-v return HTTP 406). No authentication or headers beyond x-v are required. Conforms to the shared DSB Consumer Data Standards CDR Banking API v1.36.0, harvested verbatim into the wired OpenAPI. - aid: westpac:westpac-cdr-accounts-balances-api name: Westpac Banking Corporation CDR Accounts & Balances API tags: - CDR - Open Banking - Accounts - Balances - Banking - Australia image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg humanURL: https://www.westpac.com.au/about-westpac/innovation/open-banking/ baseURL: https://digital-api.westpac.com.au/cds-au/v1/banking/accounts properties: - url: https://www.westpac.com.au/about-westpac/innovation/open-banking/ type: Documentation - url: https://consumerdatastandardsaustralia.github.io/standards/ type: APIReference - url: openapi/westpac-cds-banking-openapi.yml type: OpenAPI description: Consumer-AUTHORIZED CDR surface covering the DSB Get Accounts, Get Bulk Balances, Get Account Balance and Get Account Detail contracts (/banking/accounts, /banking/accounts/balances, /banking/accounts/{accountId}/balance and /banking/accounts/{accountId}). Unlike the public Product Reference Data surface, these endpoints return a customer's own account and balance data only through the Consumer Data Right accredited-data-recipient (ADR) model over the MTLS holder channel with an active consent; the public digital-api host returns HTTP 404 to unauthenticated callers. Conforms to the shared DSB CDR Banking API v1.36.0. - aid: westpac:westpac-cdr-transactions-api name: Westpac Banking Corporation CDR Transactions API tags: - CDR - Open Banking - Transactions - Banking - Australia image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg humanURL: https://www.westpac.com.au/about-westpac/innovation/open-banking/ baseURL: https://digital-api.westpac.com.au/cds-au/v1/banking/accounts/{accountId}/transactions properties: - url: https://www.westpac.com.au/about-westpac/innovation/open-banking/ type: Documentation - url: https://consumerdatastandardsaustralia.github.io/standards/ type: APIReference - url: openapi/westpac-cds-banking-openapi.yml type: OpenAPI description: Consumer-AUTHORIZED CDR surface covering the DSB Get Transactions For Account and Get Transaction Detail contracts (/banking/accounts/{accountId}/transactions and .../transactions/{transactionId}). Returns a consenting customer's transaction history and per-transaction detail only through the Consumer Data Right accredited-data-recipient model over the MTLS holder channel; unauthenticated calls to the public digital-api host return HTTP 404. Conforms to the shared DSB Consumer Data Standards CDR Banking API v1.36.0. - aid: westpac:westpac-cdr-direct-debits-scheduled-payments-api name: Westpac Banking Corporation CDR Direct Debits & Scheduled Payments API tags: - CDR - Open Banking - Direct Debits - Scheduled Payments - Banking - Australia image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg humanURL: https://www.westpac.com.au/about-westpac/innovation/open-banking/ baseURL: https://digital-api.westpac.com.au/cds-au/v1/banking/accounts/direct-debits properties: - url: https://www.westpac.com.au/about-westpac/innovation/open-banking/ type: Documentation - url: https://consumerdatastandardsaustralia.github.io/standards/ type: APIReference - url: openapi/westpac-cds-banking-openapi.yml type: OpenAPI description: Consumer-AUTHORIZED CDR surface covering the DSB Get Direct Debits and Get Scheduled Payments contracts (/banking/accounts/{accountId}/direct-debits, /banking/accounts/direct-debits, /banking/accounts/{accountId}/payments/scheduled and /banking/payments/scheduled). Returns a consenting customer's authorised direct-debit and scheduled-payment arrangements only through the Consumer Data Right accredited-data-recipient model over the MTLS holder channel; unauthenticated calls to the public digital-api host return HTTP 404. Conforms to the shared DSB CDR Banking API v1.36.0. - aid: westpac:westpac-cdr-payees-api name: Westpac Banking Corporation CDR Payees API tags: - CDR - Open Banking - Payees - Banking - Australia image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg humanURL: https://www.westpac.com.au/about-westpac/innovation/open-banking/ baseURL: https://digital-api.westpac.com.au/cds-au/v1/banking/payees properties: - url: https://www.westpac.com.au/about-westpac/innovation/open-banking/ type: Documentation - url: https://consumerdatastandardsaustralia.github.io/standards/ type: APIReference - url: openapi/westpac-cds-banking-openapi.yml type: OpenAPI description: Consumer-AUTHORIZED CDR surface covering the DSB Get Payees and Get Payee Detail contracts (/banking/payees and /banking/payees/{payeeId}). Returns a consenting customer's saved payee list and per-payee detail only through the Consumer Data Right accredited-data-recipient model over the MTLS holder channel; unauthenticated calls to the public digital-api host return HTTP 404. Conforms to the shared DSB Consumer Data Standards CDR Banking API v1.36.0. - aid: westpac:westpac-payway-rest-api name: Westpac PayWay REST API tags: - Payments - Card Payments - Payment Gateway - Merchants - Australia image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg humanURL: https://www.payway.com.au/docs/rest.html baseURL: https://api.payway.com.au/rest/v1 properties: - url: https://www.payway.com.au/docs/rest.html type: Documentation - url: https://www.payway.com.au/docs/api-developers-guide/ type: GettingStarted - url: https://www.westpac.com.au/business-banking/merchants-and-payments/online-payments/payway-api/ type: SignUp description: First-party Westpac payment API (beyond CDR). PayWay is Westpac's merchant payment platform; its public REST API v1 processes real-time credit-card and bank-account payments, refunds, pre-authorisations and captures, plus a customer vault, single-use tokens, EMV 3-D Secure authentication, bulk payment files, surcharges and merchant configuration. Uses HTTP Basic auth with a publishable or secret API key over TLS 1.2+ at api.payway.com.au/rest/v1. Fully documented publicly but NO downloadable OpenAPI/Swagger is published (reference docs and Postman-based exploration only), so no machine-readable spec is wired. - aid: westpac:westpac-quickstream-rest-api name: Westpac QuickStream REST API tags: - Payments - Card Payments - Payment Gateway - Merchants - Australia image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/apis-json-logo.jpg humanURL: https://quickstream.westpac.com.au/docs/quickstreamapi/v1/ baseURL: https://api.quickstream.westpac.com.au/rest/v1 properties: - url: https://quickstream.westpac.com.au/docs/quickstreamapi/v1/ type: Documentation - url: https://quickstream.westpac.com.au/docs/ type: GettingStarted - url: https://quickstream.westpac.com.au/docs/quickstreamapi/change-log/ type: ChangeLog description: First-party Westpac payment API (beyond CDR). QuickStream is Westpac's online payment gateway; its public REST API v1 exposes Transactions, Customers, Accounts, Credit Cards, Recurring Payments, PayIDs, Single-Use-Tokens, Payment Files, PayTo Agreements, Businesses and API Keys resources for card and account payment processing. Uses HTTP Basic auth with a secret or publishable API key at api.quickstream.westpac.com.au/rest/v1 (test host api.quickstream.support.qvalent.com). Fully documented publicly but NO downloadable OpenAPI/Swagger is published (reference docs and Postman-based exploration only), so no machine-readable spec is wired. common: - type: VulnerabilityDisclosure url: security/westpac-vulnerability-disclosure.yml - type: DomainSecurity url: security/westpac-domain-security.yml - type: Website url: https://www.westpac.com.au/ - type: DeveloperPortal url: https://www.westpac.com.au/about-westpac/innovation/open-banking/ - type: Documentation url: https://www.westpac.com.au/about-westpac/innovation/open-banking/product-api/ - type: GitHubOrganization url: https://github.com/westpac - type: LinkedIn url: https://www.linkedin.com/company/westpac - type: PrivacyPolicy url: https://www.westpac.com.au/privacy/privacy-statement/ - type: TermsOfService url: https://www.westpac.com.au/content/dam/public/wbc/documents/pdf/aw/WBC_CDR_Policy.pdf - type: Security url: https://www.westpac.com.au/security/how-to-report/responsible-disclosure.html - type: Authentication url: authentication/westpac-authentication.yml - type: Conventions url: conventions/westpac-conventions.yml - type: ErrorCatalog url: errors/westpac-problem-types.yml - type: Lifecycle url: lifecycle/westpac-lifecycle.yml - type: Conformance url: conformance/westpac-conformance.yml - type: DataModel url: data-model/westpac-data-model.yml - type: Overlay url: overlays/westpac-cds-banking-products-overlay.yaml - type: MCPServer url: mcp/westpac-mcp.yml - type: AgentSkill url: skills/westpac-browse-products.md - type: LLMsTxt url: llms/westpac-llms.txt - type: ChangeLog url: changelog/westpac-quickstream-changelog.yml - type: Sandbox url: sandbox/westpac-sandbox.yml - type: Components url: components/westpac-components.yml - type: DeclineCodes url: errors/westpac-decline-codes.yml - type: Compliance url: https://quickstream.westpac.com.au/docs/general/pci-compliance/ - type: GettingStarted url: https://quickstream.westpac.com.au/docs/ - type: APIReference url: https://quickstream.westpac.com.au/docs/quickstreamapi/v1/ maintainers: - FN: Kin Lane email: kin@apievangelist.com