Skip to main content
The dashboard endpoint returns the merchant record and the full list of payments associated with it. It is the one merchant endpoint that authenticates only via the x-api-key header — the merchant’s own API key returned at verification — rather than the merchant_token cookie.

Endpoint

Request

Headers

An x-api-key header is required. The key is matched against the merchant.apiKey field; a dashboard cookie is not accepted by this route.

Response

string
The merchant’s registered display name.
string
The merchant’s own API key, echoed back (prefixed arc_live_... in the current implementation).
array
All payment logs matched to this merchant. Each element is a full payment log record:

Examples

The chain value in the example ("ARC-TESTNET") is the documented testnet identifier. Production runs on Arc Mainnet (chain ID 5042) — confirm the exact production chain value with the operator before parsing it programmatically.

Success Response

Error Responses

Notes

Unlike other merchant routes, the error shape here does not include a success field — the body is just { "error": "Unauthorized" } (HTTP 401) or { "error": "Not found" } (HTTP 404). 404 means the API key did not match any merchant.
For a richer, cookie-based profile with aggregate KPIs and recent payments, use GET /api/merchant/me instead.
Treat the response’s apiKey as a secret — it is the same key you authenticate with. Never log it or expose it in client-side code.