Personalized payment links
Every user receives a stable, username-based checkout URL that operators can open, copy, or share. Collectors send one link; payers never need an account.
Master operations console
A protected administration surface for the people who run the network: dashboard identity, business directory, user directory, master BIN list, and platform settings.
Multi-business merchant directory
Operators register each merchant account with a display name, NMI-compatible transaction post URL, daily capacity, and a transaction enable switch. One organization can route volume across many gateway destinations.
User-to-business assignment
A user is subscribed to the businesses they are allowed to collect for. The public link then presents those businesses as a checkout destination rather than a generic pay-anyone form.
Per-relationship payment rules
Each user-business pair carries its own public token, secret token, 3-D Secure token, card-brand policy, BIN policy, billing requirement, transaction switch, and daily limit. Credentials and policy stay isolated to that relationship.
PCI-aware hosted card capture
Card number, expiry, and CVV render in Network Merchants Collect.js hosted fields with inline brand preview. The application receives a payment token, never the raw primary account number.
3-D Secure checkout
When a relationship requires 3-D Secure, the checkout collects billing context, runs Gateway.js authentication, presents a challenge modal, and forwards CAVV, ECI, directory server, and related authentication fields with the charge.
Immediate and scheduled charges
Payers can complete a same-session sale or schedule a single future charge on a chosen date. Scheduled requests use the gateway subscription contract with a monthly cycle and one planned payment.
Dual-layer spending limits
Checkout computes remaining capacity from the tighter of the user's daily relationship limit and the business daily limit. Amounts cannot exceed what is left, and approved sales update both daily and lifetime totals.
Card brand policy
Operators allow Visa, Mastercard, American Express, and Discover independently per relationship. The checkout displays accepted brands and rejects a tokenized card that falls outside policy.
Master BIN allowlists and blocklists
A central six-digit BIN directory, with automatic brand detection, is assigned per card type as an allowlist or a blocklist. Checkout compares the tokenized BIN before the charge is sent.
Transaction kill switches
Operators can disable charges on a single user-business relationship, on an entire business, or both. The checkout refuses the destination when either switch is off.
Gateway credential isolation
Public tokenization keys load in the browser. Secret keys and the static originating IP are applied only on the server when the charge is posted to the merchant gateway.