Six providers · One contract
Payment providers
Six interchangeable providers behind one contract. Switch provider and the code, tests and checks stay the same.
One contract for every provider
The PaymentProvider contract spans auth, checkout, tokenize, charge, and webhook verification. Adapters supply the provider-specific behavior; everything else stays identical.
A day to add the next one
Mirror the Braintree adapter, plug in the new credentials, register in the catalogue. The harness and guardrails light up automatically — no UI work.
Provider quirks handled
Braintree’s form-body HMAC, Cashfree’s ms timestamps, PayPal’s PayPal-Request-Id, Blackbaud’s OAuth-plus-subscription-key — every quirk lives inside its adapter.
Capability matrix
- Live
- passes an end-to-end test today.
- Code-ready
- Pulse generates the code; the live test follows in a later release.
- Partial
- reachable, with the convenience layer still on the roadmap.
- Not offered
- the provider does not expose it. For idempotency, PayBridge adds its own layer.
| Provider | Hosted checkout | Card vault | Payouts | Webhook check | Native idempotency | Via MCP |
|---|---|---|---|---|---|---|
| Braintree | ||||||
| Cashfree | ||||||
| PayPal | ||||||
| Blackbaud (practice) | ||||||
| Blackbaud | ||||||
| Razorpay |
Braintree
SandboxPayPal-owned global processor. Hosted Fields tokenization, SHA1 HMAC webhooks.
Cashfree
SandboxIndia PG. Drop-in checkout, HMAC-SHA256 webhooks. Direct REST against sandbox.cashfree.com/pg.
PayPal
SandboxOrders v2 REST. OAuth client-credentials, native PayPal-Request-Id idempotency, verify-webhook-signature API.
Blackbaud (practice)
PracticeSelf-hosted real-shape mock — OAuth 2.0 with consent screen, Bb-Api-Subscription-Key dual-credential gate, HMAC-signed webhooks.
Blackbaud
SandboxReal SKY Payments API. OAuth 2.0 authorization-code + rotating refresh token, Bb-Api-Subscription-Key, server-driven CreateTransaction against a BBMS Test merchant.
Razorpay
Live moneyIndia live rail. Standard Checkout against api.razorpay.com, Basic-auth Orders API, HMAC-SHA256 (hex) payment + webhook signatures.