Skip to content

Rank #1 of 5 in Card Issuing Platforms

Stripe Issuing logo

Stripe Issuing

YC S09

Stripe, Inc. · commercial

no public signals

Stripe ships more than one product — each judged line competes in its own arena on the same stories as everyone else.

Not yet judged (10 — no arena where they compete): Invoicing · Capital · Revenue Recognition · Sigma · Data Pipeline · Managed Payments · Lemon Squeezy · Directory · Projects · Climate

Try itExperimental

See what an agent can do with Stripe Issuing before you ever sign up. Pick a story: recorded sessions replay real probe-harness transcripts; commands tagged live-capable can re-run against the real endpoint from our edge, right now (▶ run live — the exact same request, live and recorded lines always labeled); the live MCP handshake runs real requests from our edge, right now — including, where the server allows it, one real read-only tool call (bring your own key for auth-gated servers); sandboxed self-drive sessions are designed and gated (docs/TRY-IT.md).

$curl -si https://api.stripe.com/v1/issuing/cards | head -4 # Issuing cards API, keyless → 401recorded session — replayed, not live
recorded 2026-09-15 · exit 0 · captured verbatim by our probe harness, secrets redacted · pure-HTTP probe — ▶ run live re-runs it from our edge

Verified integrations

No integration evidence found in our corpus for this product yet — that means none was found, never that it doesn’t integrate.

By theme — the product's score on each story themeBy theme

Agenticness — how well agents can access and operate the productAgenticnessevidence →

How well agents can access and operate the product

47.9/100

Auth decisioning — stories about auth decisioning in this arenaAuth decisioningevidence →

Stories about auth decisioning in this arena

22.3/100

Automation depth — how much of the product can run unattendedAutomation depthevidence →

How much of the product can run unattended

15.4/100

Card lifecycle — stories about card lifecycle in this arenaCard lifecycleevidence →

Stories about card lifecycle in this arena

31.7/100

Issuing agent access — stories about issuing agent access in this arenaIssuing agent accessevidence →

Stories about issuing agent access in this arena

62.4/100

Issuing compliance — stories about issuing compliance in this arenaIssuing complianceevidence →

Stories about issuing compliance in this arena

0.0/100

Issuing disputes — stories about issuing disputes in this arenaIssuing disputesevidence →

Stories about issuing disputes in this arena

30.0/100

Ledger settlement — stories about ledger settlement in this arenaLedger settlementevidence →

Stories about ledger settlement in this arena

15.4/100

Openness — open source, data portability, and self-hosting storiesOpennessevidence →

Open source, data portability, and self-hosting stories

16.8/100

Privacy posture — data-handling and privacy storiesPrivacy postureevidence →

Data-handling and privacy stories

0.0/100

Program management — stories about program management in this arenaProgram managementevidence →

Stories about program management in this arena

21.4/100

Spend controls — stories about spend controls in this arenaSpend controlsevidence →

Stories about spend controls in this arena

46.0/100

Wallets tokenization — stories about wallets tokenization in this arenaWallets tokenizationevidence →

Stories about wallets tokenization in this arena

8.0/100

Story verdicts — every judged story with its evidenceStory verdicts

?

Sorted by importance (agentic first) (high → low) · 53/53 stories · click a row’s chevron for the rationale and evidence

Drive the product through a documented public API G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full9/10T

Connect an agent via an official MCP server G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full7/10T

Plug MCP servers into this product so it can use their tools G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3n/a0/10

Delegate tasks to a built-in AI assistant inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness3n/auntestednone yet

Issue scoped/least-privilege API credentials for an agent G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10C

Point an agent at llms.txt or agent-oriented docs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10T

Run the product headlessly / in CI for automation G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full8/10T

Set up automations that run autonomously in the background G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full7/10T

Build against official SDKs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial6/10T

Operate the product with natural-language commands G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial6/10T

Use an official CLI G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial6/10T

Subscribe to events via webhooks G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial5/10C

Explore an interactive API reference with runnable examples G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial3/10T

Get AI-generated insights and suggestions from my data inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial3/10C

Download a machine-readable API spec (OpenAPI or equivalent) G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Rely on versioned APIs with a documented deprecation policy G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2noneuntestednone yet

Test against a sandbox environment without touching production data G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness1partial6/10X

Give an agent its own card — issue a scoped virtual card to an AI agent with merchant locks, amount caps, and expiry so autonomous purchases stay inside policy, a use the vendor documents by name C

Agent cards

ai-native userIssuing agent access — stories about issuing agent access in this arenaIssuing agent access3full8/10C

Approve or decline each authorization in real time — a webhook or auth-stream endpoint my code answers inside the network's time budget, with a documented timeout fallback I control C

Auth stream

developerAuth decisioning — stories about auth decisioning in this arenaAuth decisioning3partial6/10C

Define rules that trigger actions automatically on events G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth3partial6/10C

Create a virtual card through the API in one call — PAN, CVV, and expiry available programmatically the moment it's issued — and go from sandbox to a live card without a sales cycle C

Virtual cards

developerCard lifecycle — stories about card lifecycle in this arenaCard lifecycle3partial5/10T

Launch a card program without becoming a bank — BIN sponsorship, network membership, and program management are the platform's problem, and the time from signup to first live card is documented C

Program launch

founderProgram management — stories about program management in this arenaProgram management3partial5/10T

Set spend limits per card and per cardholder — amount caps over daily, monthly, or all-time windows, and transaction-count velocity rules — enforced by the platform, not my code C

Limits

ops userSpend controls — stories about spend controls in this arenaSpend controls3partial5/10T

See money move in real time — account and card balances, a transaction ledger that ties every authorization to its clearing, and settlement reporting that reconciles to the penny C

Balances

finance leadLedger settlement — stories about ledger settlement in this arenaLedger settlement3partial4/10C

Export all of my data in open formats and leave G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3noneuntestednone yet

Prevent my data from being used to train AI models G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture3n/auntestednone yet

Self-host the core product G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3n/auntestednone yet

Issue single-use and tightly scoped cards — one purchase, one merchant, an exact amount — so a leaked number is worthless the moment it's used C

Scoped cards

developerSpend controls — stories about spend controls in this arenaSpend controls2full8/10C

Do everything through the API that I can do in the UI G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2partial7/10T

An agent can operate my card program — read balances and transactions, create and update cards, and adjust spend controls through the API or an MCP surface with scoped credentials C

Agent operations

ai-native userIssuing agent access — stories about issuing agent access in this arenaIssuing agent access2partial6/10T

Order personalized physical cards through the API — custom card art, bulk orders, shipping methods and tracking — without managing a card manufacturer relationship myself C

Physical cards

ops userCard lifecycle — stories about card lifecycle in this arenaCard lifecycle2partial6/10C

Restrict where a card works — merchant category (MCC) allowlists and blocklists, and single-merchant locks — applied at authorization time C

Merchant controls

ops userSpend controls — stories about spend controls in this arenaSpend controls2partial6/10C

The platform fights fraud on my issued cards — network fraud scores or its own models surfaced at auth time, suspicious-activity alerts, and tooling to block and reissue compromised cards C

Fraud monitoring

ops userIssuing disputes — stories about issuing disputes in this arenaIssuing disputes2partial6/10C

Choose how transactions are funded — prefunded balances or just-in-time funding where my system approves and funds each authorization — with the cash-flow tradeoffs documented C

Funding models

finance leadProgram management — stories about program management in this arenaProgram management2partial5/10C

The full card lifecycle is API-driven — activate, pause, unpause, report lost or stolen, reissue with a replacement linked to the original, and permanently close C

Lifecycle states

developerCard lifecycle — stories about card lifecycle in this arenaCard lifecycle2partial5/10C

Cards land in Apple Pay and Google Pay — push provisioning from my app with the entitlements process documented, plus in-wallet card art and manual provisioning as a fallback C

Wallet provisioning

developerWallets tokenization — stories about wallets tokenization in this arenaWallets tokenization2partial4/10C

File and track disputes on card transactions programmatically — network reason codes, evidence submission, provisional credit handling, and status webhooks through resolution C

Dispute filing

ops userIssuing disputes — stories about issuing disputes in this arenaIssuing disputes2partial4/10C

Simulate the whole transaction lifecycle in the sandbox — authorizations, clearings, reversals, refunds, and declines — so my auth logic is tested before a real card ever swipes C

Simulation

developerAuth decisioning — stories about auth decisioning in this arenaAuth decisioning2partial4/10T

Post-auth events are as programmatic as auth — clearings, refunds, reversals, and chargebacks arrive as webhooks with stable transaction identifiers, so my own ledger never drifts C

Settlement events

developerLedger settlement — stories about ledger settlement in this arenaLedger settlement2partial3/10C

Cardholder verification is built into issuance — KYC for consumers and KYB for businesses run through the platform with documented data requirements, review states, and re-verification flows C

Kyc

ops userIssuing compliance — stories about issuing compliance in this arenaIssuing compliance2none0/10

Every authorization event carries decision-grade context — merchant name and MCC, enhanced merchant data, wallet and entry-mode details, partial-approval and incremental-auth signals C

Auth context

developerAuth decisioning — stories about auth decisioning in this arenaAuth decisioning2none0/10

Network tokens are first-class — I can see and manage the tokens created for a card, know which wallet or merchant holds them, and revoke them independently of the PAN C

Tokenization

developerWallets tokenization — stories about wallets tokenization in this arenaWallets tokenization2none0/10

The platform supports the card types my product needs — debit, prepaid, commercial credit, and consumer credit programs — not just one prepaid rail C

Card types

founderProgram management — stories about program management in this arenaProgram management2none0/10

Cardholder credentials are manageable through the API — PIN set and reset flows, 3DS enrollment for online use where the region requires it — without support tickets C

Credentials

developerWallets tokenization — stories about wallets tokenization in this arenaWallets tokenization2noneuntestednone yet

Choose where my data is stored (region/residency) G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

Control data retention and deletion G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

I get machine-readable reconciliation artifacts — daily settlement files or report APIs covering interchange, fees, and network adjustments — that my finance stack can consume automatically C

Recon reports

finance leadLedger settlement — stories about ledger settlement in this arenaLedger settlement2noneuntestednone yet

Opt out of telemetry and usage tracking G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2n/auntestednone yet

Perform bulk operations across many items at once G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2noneuntestednone yet

Read the product's source under an open license G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2n/auntestednone yet

Schedule recurring jobs or workflows G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2noneuntestednone yet

Show cardholders their own PAN and CVV without inheriting PCI scope — hosted components or ephemeral-key reveal flows the vendor documents as keeping me out of SAQ D C

Pci scope

developerIssuing compliance — stories about issuing compliance in this arenaIssuing compliance2noneuntestednone yet

Version, review, and roll back my automations G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth1n/auntestednone yet

Opportunities — the stories that would move this product's scores, from its own judged verdictsOpportunitiestop 8 of 38 stories with headroom

What would move Stripe Issuing’s scores — derived from its own judged verdicts, biggest headroom first. Each line quotes what the judge found missing; shipping it (or evidencing it publicly) is the fix.

  1. Openness — open source, data portability, and self-hosting storiesExport all of my data in open formats and leave

    nonemoves PA Scoreimpact 30

    No evidence of a data export/portability feature or open-format export mechanism for Stripe Issuing account data; the API allows retrieving records via API calls but there's no documented bulk export tool or open-format data portability guarantee for users to 'take their data and leave'.

  2. Agenticness — how well agents can access and operate the productDownload a machine-readable API spec (OpenAPI or equivalent)

    nonemoves API qualityimpact 30

    The evidence pack shows explicit probing for OpenAPI/Swagger spec endpoints on docs.stripe.com all returned 404, and no other citation confirms a downloadable OpenAPI or equivalent machine-readable spec; only markdown docs and llms.txt are shown to work.

  3. Agenticness — how well agents can access and operate the productRely on versioned APIs with a documented deprecation policy

    nonemoves API qualityimpact 30

    Missing: any docs page or changelog describing dated API versions, backward-compatibility guarantees, or deprecation timelines.

  4. Agenticness — how well agents can access and operate the productGet AI-generated insights and suggestions from my data inside the product

    partialq3/10moves Built-in AIimpact 21

    Missing: evidence of general AI-generated insights/suggestions across spending data, dashboard-level AI summaries, or proactive recommendations beyond fraud risk scoring.

  5. Agenticness — how well agents can access and operate the productExplore an interactive API reference with runnable examples

    partialq3/10moves API qualityimpact 21

    Missing: explicit documentation or demonstration of runnable/interactive code snippets, live API console, or sandboxed example execution within the reference pages.

  6. Auth decisioning — stories about auth decisioning in this arenaEvery authorization event carries decision-grade context — merchant name and MCC, enhanced merchant data, wallet and entry-mode details, partial-approval and incremental-auth signals

    nonemoves PA Scoreimpact 20

    Missing: explicit documentation of MCC field, enhanced merchant metadata, wallet/entry-mode indicators, and partial-approval/incremental-auth signal support in the authorization object.

  7. Automation depth — how much of the product can run unattendedPerform bulk operations across many items at once

    nonemoves PA Scoreimpact 20

    Stripe Issuing's documented API only shows single-resource create endpoints for cards and cardholders, with no evidence of batch/bulk endpoints or documented patterns for issuing or managing many cards/cardholders in one call.

  8. Automation depth — how much of the product can run unattendedSchedule recurring jobs or workflows

    nonemoves PA Scoreimpact 20

    The evidence pack covers card creation, spending controls, disputes, and real-time authorization webhooks, but nothing describes a scheduling or recurring-job/workflow automation feature (e.g., cron-like triggers, scheduled disbursements, or workflow orchestration) for AI-native users.

Showing the top 8 of 38 — every none/partial verdict in the story verdicts table is headroom.

Think a verdict is wrong? Every verdicts-table row has a Flag link — see the methodology.

Coverage map — which docs area, API section, or community source covers which judged storiesCoverage map7 surfaces · 32 covered stories

Where the cited evidence behind each covered verdict came from — the same citations the verdicts table shows, no extra judging.

Issuing docs30 stories

Probe proofs — replayable recordings from the probe harnessProbe proofs

Replayable recordings from our probe harness — see the Prove-It protocol to submit one.

$curl -si https://api.stripe.com/v1/issuing/cards | head -4 # Issuing cards API, keyless → 401reproduced
$ curl -si https://api.stripe.com/v1/issuing/cards | head -4  # Issuing cards API, [redacted]less → 401
HTTP/2 401

server: nginx

date: Tue, 15 Sep 2026 09:12:11 GMT

content-type: application/json
$curl -sL https://docs.stripe.com/llms.txt | head -3reproduced
$ curl -sL https://docs.stripe.com/llms.txt | head -3
# Stripe Documentation

When installing Stripe packages, always check the npm registry for the latest version rather than relying on memorized version numbers. Run `npm view stripe version` or check https://www.npmjs.com/package/stripe before pinning a version. For Python, check https://pypi.org/project/stripe/. Never hardcode an old version number from training data — always install with `@latest` or verify the current version first.
$curl -si -X POST https://mcp.stripe.com/ -H 'Content-Type: application/json' -d '<jsonrpc initialize>' # the remote MCP server Stripe documents at docs.stripe.com/mcpreproduced
$ curl -si -X POST https://mcp.stripe.com/ -H 'Content-Type: application/json' -d '<jsonrpc initialize>'  # the remote MCP server Stripe documents at docs.stripe.com/mcp
HTTP/2 401

www-authenticate: Bearer resource_metadata=https://mcp.stripe.com/.well-known/oauth-protected-resource

Claims vs evidence — vendor claims reconciled against independent verdictsClaims vs evidence

5 of 14 testable claims verified · 0 contradictedintegrity 36/100

17 distinct capability claims found in Stripe Issuing’s own claimed-docs/GitHub materials, reconciled against our judge’s independent verdicts.

5

Verified

9

Unverified

0

Contradicted

18

Undersold

Verified (5)
Unverified (10)
Undersold (18)
Claims outside our story set (2)

Real capability claims found in Stripe Issuing’s own materials, but no story in this arena’s taxonomy covers them yet — that’s feedback on the taxonomy, not a mark against the product.

  • Create an Issuing Cardholder object that cards can be issued to

    source ↗
  • Issue cards to third-party connected accounts as a Connect platform

    source ↗
Suggest a story for these →

Business model

usage-based

Published usage-based pricing: $0.10 per virtual card, $3.50 per standard physical card, $15 per dispute, cross-border 1% + $0.30 plus 1% FX; no setup fees; interchange revenue share exists but the split is negotiated, not published.

pricing ↗

Score trend

How this product’s scores have moved as evidence and verdicts are re-derived — a point per change, not per day.

PA Scoretracked since Sep 15 '26 — no movement recorded yet
Agent-readytracked since Sep 15 '26 — no movement recorded yet

Try Experimental

Run it in the microterminal →

Recorded agent sessions — and a live MCP handshake where the vendor ships one.

Flag

⚑ Flag a verdict

Think a verdict is wrong? Opens a prefilled GitHub issue — or use the ⚑ next to any verdict above.

Badge

Embed this product's score badge →

Hotlinked SVG — always shows the live current score.

For agents

Data