This is not our API. This repository is an independent, third-party profile of a company's publicly available API surface, maintained by API Evangelist. API Evangelist does not operate, host, resell, or support this company's APIs, and is not affiliated with or endorsed by the company unless stated on the profile.
Where the information came from. Everything here is assembled from material a member of the public can reach with a browser and no credentials — the company's own website, developer portal and documentation, the specifications it publishes for public use (OpenAPI, AsyncAPI, JSON Schema,
apis.json,llms.txtand similar), its public repositories, and its public status, pricing and changelog pages. Nothing here is obtained by breaching a system, defeating an access control, or using credentials of any kind.The rating is an independent assessment. The Kin Score and Agent Readiness rating are independently calculated scores of a company's public API artifacts, produced by API Evangelist against a published rubric. They are not certifications, endorsements, security assessments, or audits, and they score published artifacts — not the quality, safety, or security of the software.
Corrections, re-scores, and removal are free. No partnership, contract, or purchase is required, and you do not need to justify the request.
- Something wrong? Open an issue on this repository, or email info@apievangelist.com.
- Published something new? Ask for a re-score and we will re-run the rating.
- Want the listing taken down? Say so and we will honor it. The profile is reduced to your company name, a factual description, and a link to your own site, and the company is recorded as unrated — never scored zero for having asked.
Response times. Acknowledgement within one business day; removal or restriction within two business days; corrections and re-scores within five business days.
Not from the company, and here with a question? You are welcome here — we would rather be the front line and point you the right way than have a good report go nowhere. What this repository can answer is narrow, though, so it is worth knowing who you are actually looking for:
- A question about how the API works, an account, billing, or a bug in the service — that is the company's own support, not us. We profile this API; we do not operate it and cannot see your account.
- A bug in an open-source project we only catalog — file it on that project's own repository. This has happened with a real and correct bug report that reached us instead of the people who could fix it, which helped nobody.
- Anything about this listing itself — the description, the tags, the rating, a missing or wrong artifact — is ours. Open an issue here.
- Not sure, or something general about API Evangelist or APIs.io — open an issue on the APIs.io Inbox and we will route it.
This repository contains no software, and we will never ask you to download anything. There is no build, release, installer, or binary here — only text and machine-readable API descriptions, so there is nothing here that can be "corrupt" or need "repairing". Any issue, comment, or email claiming otherwise and offering a download link is not from us and is hostile. Do not follow the link; it is a lure. Report it to GitHub and, if you like, tell us at info@apievangelist.com so we can take it down.
On a security or compliance team? Email info@apievangelist.com with security in the subject line and you will get a person, not a form. We will tell you exactly which public URLs this profile was built from so your team can see the same surface we did, and we will take the listing down on request while you work through it.
Full detail: Where this data comes from
Qonto is a European business banking / neobank platform for freelancers and SMEs, founded in Paris in 2016 and operating on an EU-passported payment institution licence. Its Business API and Onboarding API give programmatic access to business accounts, EUR transactions, SEPA and international transfers, cards, client and supplier invoices, SEPA Direct Debit, payment links, terminals, webhooks, and partner-led company onboarding, authenticated by a login+secret-key API key or OAuth 2.0.
APIs.json: https://raw.githubusercontent.com/api-evangelist/qonto/refs/heads/main/apis.yml
- Business Banking
- Neobank
- Fintech
- Payments
- SEPA
- Open Banking
- EUR
- Europe
- Created: 2026-07-17
- Modified: 2026-07-17
- Production base URL:
https://thirdparty.qonto.com/v2 - Sandbox base URL:
https://thirdparty-sandbox.staging.qonto.co/v2 - API key:
Authorization: {sign-in}:{secret-key}— the organization sign-in and secret key concatenated with a colon. This resembles HTTP Basic auth but is not (no Base64 encoding). - OAuth 2.0: authorization code flow via
POST https://thirdparty.qonto.com/oauth2/token; access tokens valid 1 hour, refresh tokens 90 days, per-resource scopes. OAuth is the recommended method for SaaS integrations. - PSD2 / TPP: regulated third parties can identify via a QSeal certificate (QSealC).
- SCA: Strong Customer Authentication is required for sensitive operations (e.g. transfers) via
X-Qonto-Sca-Session-Token/X-Qonto-MFAheaders.
Core Business API surface for retrieving the authenticated organization and its bank accounts, plus memberships, teams, labels, and the current subscription plan.
- Human URL: https://docs.qonto.com/get-started/business-api/overview
- Base URL:
https://thirdparty.qonto.com/v2
- Organizations
- Accounts
- Memberships
- Teams
- Labels
- Documentation
- API Reference
- OpenAPI — OpenAPI Specification
- Postman Collection — Postman Collection 2.1
List and retrieve account transactions with rich filtering (status, dates, side, operation type), account statements, and cash flow category assignment.
- Human URL: https://docs.qonto.com/api-reference/business-api/transactions-statements/transactions/list-transactions
- Base URL:
https://thirdparty.qonto.com/v2
- Transactions
- Statements
- Cash Flow
Create single, bulk, and recurring SEPA credit transfers in EUR (standard or instant), manage SEPA beneficiaries, and run Verification of Payee (VoP) checks. Sensitive operations require Strong Customer Authentication (SCA).
- Human URL: https://docs.qonto.com/api-reference/business-api/payments-transfers/sepa-transfers/sepa-transfers/create
- Base URL:
https://thirdparty.qonto.com/v2
- SEPA
- Transfers
- Payments
- Beneficiaries
Check eligibility, list available currencies, create quotes, manage international beneficiaries, and initiate non-EUR / cross-border transfers.
- Human URL: https://docs.qonto.com/api-reference/business-api/payments-transfers/international-transfers/introduction
- Base URL:
https://thirdparty.qonto.com/v2
- International
- FX
- Cross Border
- Beneficiaries
Move funds between the organization's own Qonto bank accounts.
- Human URL: https://docs.qonto.com/api-reference/business-api/payments-transfers/internal-transfers/create-an-internal-transfer
- Base URL:
https://thirdparty.qonto.com/v2
- Internal Transfers
- Accounts
Issue single or bulk virtual and physical cards, set and update limits, lock/unlock, discard, report lost/stolen, manage options and restrictions, and retrieve a card iframe URL.
- Human URL: https://docs.qonto.com/api-reference/business-api/cards/list-cards
- Base URL:
https://thirdparty.qonto.com/v2
- Cards
- Virtual Cards
- Physical Cards
Create, finalize, send, and manage client (customer) invoices, quotes, and credit notes, including bulk import, e-invoicing dispatch, and Factur-X PDF generation. Manage clients (customers) and products.
- Human URL: https://docs.qonto.com/api-reference/business-api/expense-management/client-quotes-notes/client-invoices/list-client-invoices
- Base URL:
https://thirdparty.qonto.com/v2
- Invoicing
- Accounts Receivable
- Quotes
- Credit Notes
- Factur-X
Bulk-create, list, retrieve, and mark supplier (vendor) invoices as paid or rejected, and attach supporting documents to transactions.
- Human URL: https://docs.qonto.com/api-reference/business-api/expense-management/supplier-invoices/list-supplier-invoices
- Base URL:
https://thirdparty.qonto.com/v2
- Invoicing
- Accounts Payable
- Attachments
Collect EUR payments from customers via SEPA Direct Debit - manage mandates, one-off collections, and recurring subscriptions.
- Human URL: https://docs.qonto.com/api-reference/business-api/payments-transfers/sepa-direct-debit/introduction
- Base URL:
https://thirdparty.qonto.com/v2
- SEPA Direct Debit
- SDD
- Collections
- Mandates
Connect a payment links provider and create, list, and deactivate secure customizable payment links, with available payment methods and per-link payments.
- Human URL: https://docs.qonto.com/api-reference/business-api/payments-transfers/payment-links/introduction
- Base URL:
https://thirdparty.qonto.com/v2
- Payment Links
- Checkout
- Getting Paid
Push payments from your POS system directly to physical Qonto payment terminals and retrieve terminal payment status.
- Human URL: https://docs.qonto.com/api-reference/business-api/terminals/introduction
- Base URL:
https://thirdparty.qonto.com/v2
- Terminals
- In-Person Payments
- POS
Create, list, update, and delete webhook subscriptions to receive real-time signed HTTP callbacks for transactions, cards, invoices, SEPA Direct Debit, payment links, terminals, memberships, and consent revocations.
- Human URL: https://docs.qonto.com/api-reference/business-api/webhooks/overview
- Base URL:
https://thirdparty.qonto.com/v2
- Webhooks
- Events
- Real Time
- Documentation
- API Reference
- OpenAPI — OpenAPI Specification
- Postman Collection — Postman Collection 2.1
Partner-facing API to create and track organization registrations (including company creation flows), upload and manage KYC files, and subscribe to onboarding webhook events.
- Human URL: https://docs.qonto.com/get-started/onboarding-api/overview
- Base URL:
https://thirdparty.qonto.com
- Onboarding
- KYC
- Company Creation
- Partners
Create Embed Auth Links to authenticate end customers into Qonto Hosted Pages and proxy encoded API requests dispatched by the Embed SDK for embedded banking experiences.
- Human URL: https://docs.qonto.com/api-reference/business-api/endpoints/embed-auth-links/introduction
- Base URL:
https://thirdparty.qonto.com/v2
- Embedded Finance
- Embed SDK
- Hosted Pages
- Documentation
- API Reference
- OpenAPI — OpenAPI Specification
- Postman Collection — Postman Collection 2.1
- Company: French B2B fintech founded 2016, HQ Paris; 600,000+ business customers. Operates on an EU-passported payment institution licence (obtained 2018) and filed for a French banking licence in 2025.
- Markets: France (largest), Germany, Spain, Italy, plus Austria, Belgium, Netherlands, and Portugal (entered late 2024).
- Acquisitions: Penta (German business-banking competitor, 2022) and Regate (accounting / financial automation, 2024). Regate operates its own separate public API at docs.regate.io.
- Currency: EUR.
- Deprecations: the
/v1/organizations/{slug}and/v2/organizations/{slug}endpoints are deprecated with sunset on 2026-11-15; migrate toGET /v2/organization.
FN: Kin Lane Email: kin@apievangelist.com