INSTNT PAN FIND API
Instant PAN discovery service. Submit the holder name, date of birth and registered mobile number and receive the matching Permanent Account Number along with a confidence score and the masked source record. Only exact and high-confidence matches are returned; low-confidence lookups are rejected and never charged.
Authentication
API key + API secret headers, or a Bearer JWT. Obtain the JWT from POST /api/v1/auth/token using your key and secret; tokens are valid for 3600 seconds.
| Scheme | Location | Value |
|---|---|---|
| JWT bearer | Header | Authorization: Bearer <token> |
| API key | Header | X-API-Key: pk_xxxxxxxx |
| API secret | Header | X-API-Secret: sk_xxxxxxxx |
Headers
| Header | Required | Description |
|---|---|---|
| Authorization | Optional | Bearer JWT issued by the token endpoint. |
| X-API-Key | Yes | Your API key (pk_…). |
| X-API-Secret | Yes | Your API secret (sk_…), shown once at creation. |
| Content-Type | Yes | application/json |
| X-Request-Id | No | Your idempotency key; echoed back in the response. |
Parameters & validation rules
| Name | Type | Required | Validation | Description |
|---|---|---|---|---|
| name | string | Yes | /^[A-Za-z .]{3,80}$/ | Full name of the PAN holder as printed on the card. |
| dob | date | Yes | /^\d{4}-\d{2}-\d{2}$/ | Date of birth in YYYY-MM-DD format. |
| mobile | string | No | /^[6-9]\d{9}$/ | Registered 10-digit Indian mobile number. Improves match accuracy. |
Example request
curl -X POST 'https://api.yourdomain.com/api/v1/instant-pan-find' \
-H 'x-api-key: YOUR_API_KEY' \
-H 'x-api-secret: YOUR_API_SECRET' \
-H 'Content-Type: application/json' \
-d '{"name": "RAHUL SHARMA", "dob": "1992-04-18"}'
<?php
$payload = ['name' => 'RAHUL SHARMA', 'dob' => '1992-04-18'];
$ch = curl_init('https://api.yourdomain.com/api/v1/instant-pan-find');
curl_setopt_array($ch, [
CURLOPT_RETURNTRANSFER => true,
CURLOPT_POST => true,
CURLOPT_POSTFIELDS => json_encode($payload),
CURLOPT_HTTPHEADER => [
'x-api-key: YOUR_API_KEY',
'x-api-secret: YOUR_API_SECRET',
'Content-Type: application/json',
],
]);
$response = json_decode(curl_exec($ch), true);
curl_close($ch);
print_r($response['data']);
const res = await fetch('https://api.yourdomain.com/api/v1/instant-pan-find', {
method: 'POST',
headers: {
'x-api-key': 'YOUR_API_KEY',
'x-api-secret': 'YOUR_API_SECRET',
'Content-Type': 'application/json',
},
body: JSON.stringify({"name": "RAHUL SHARMA", "dob": "1992-04-18"}),
});
const json = await res.json();
console.log(json.data);
import requests
res = requests.post(
'https://api.yourdomain.com/api/v1/instant-pan-find',
json={"name": "RAHUL SHARMA", "dob": "1992-04-18"},
headers={
'x-api-key': 'YOUR_API_KEY',
'x-api-secret': 'YOUR_API_SECRET',
},
timeout=30,
)
print(res.json()['data'])
import java.net.URI;
import java.net.http.*;
String payload = "{\"name\": \"RAHUL SHARMA\", \"dob\": \"1992-04-18\"}";
HttpRequest request = HttpRequest.newBuilder()
.uri(URI.create("https://api.yourdomain.com/api/v1/instant-pan-find"))
.header("x-api-key", "YOUR_API_KEY")
.header("x-api-secret", "YOUR_API_SECRET")
.header("Content-Type", "application/json")
.POST(HttpRequest.BodyPublishers.ofString(payload))
.build();
HttpResponse<String> response = HttpClient.newHttpClient()
.send(request, HttpResponse.BodyHandlers.ofString());
System.out.println(response.body());
package main
import (
"bytes"
"fmt"
"io"
"net/http"
)
func main() {
payload := []byte(`{"name": "RAHUL SHARMA", "dob": "1992-04-18"}`)
req, _ := http.NewRequest("POST", "https://api.yourdomain.com/api/v1/instant-pan-find", bytes.NewBuffer(payload))
req.Header.Set("x-api-key", "YOUR_API_KEY")
req.Header.Set("x-api-secret", "YOUR_API_SECRET")
req.Header.Set("Content-Type", "application/json")
res, err := http.DefaultClient.Do(req)
if err != nil {
panic(err)
}
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}
Responses
Success 200
{
"success": true,
"request_id": "req_8f21c0b4a7",
"meta": {
"charged": 6.0,
"environment": "production",
"balance": 4821.5,
"response_ms": 312
},
"data": {
"pan": "ABCDE1234F",
"name": "RAHUL SHARMA",
"dob": "1992-04-18",
"category": "Individual",
"match_score": 98,
"status": "VALID"
}
}
Error 4xx
{
"success": false,
"request_id": "req_8f21c0b4a7",
"error": {
"code": "PAN_NOT_FOUND",
"message": "No PAN record matched the supplied name and date of birth."
},
"meta": {
"charged": 0
}
}
HTTP status codes
| Code | Meaning |
|---|---|
| 200 | Success - verification completed and wallet debited. |
| 400 | Validation failed - check the parameter rules below. |
| 401 | Missing or invalid JWT / API key. |
| 402 | Insufficient wallet balance. |
| 403 | API not purchased or key not permitted for this endpoint. |
| 404 | Record not found at the source registry. |
| 422 | Upstream provider returned an unprocessable response. |
| 429 | Rate limit exceeded - retry after the window resets. |
| 500 | Unexpected server error - safe to retry with the same request_id. |
| 503 | Upstream registry temporarily unavailable. |
Rate limit & billing
Rate limit
60 req/min per key
Charge
₹6.00 per successful call
Failed calls
Not charged (4xx/5xx)
When throttled, the API returns 429 with X-RateLimit-Limit, X-RateLimit-Remaining and Retry-After headers.