Back to case studies

Backend Developer

Dynamic Gateway Routing for Apple Pay Tokenized Payments

Implemented token mapping, API extensions, and deterministic routing for gateways with different Apple Pay data requirements.

Details are intentionally generalized to respect confidentiality.

Apple PayTokenizationGateway RoutingSecure DataAPI Extensions
Timeline
2025
Domain
Tokenized payments, gateway routing, secure forwarding
Impact
Enabled gateway-aware Apple Pay support for encrypted and decrypted transaction paths.

Architecture

System boundary map

The diagram preserves the major responsibilities and handoffs while omitting proprietary implementation details.

Apple Pay Gateway Routing

Implemented token decryption mapping, API extensions, gateway decision logic, validation, and secure forwarding for encrypted and decrypted flows.

1Apple Pay Token
2Payment API
3Token Mapping
4Routing Policy
5Gateway Adapter
6Authorization

Context

Wallet payments introduce tokenized data, gateway capability differences, and security-sensitive forwarding requirements.

The implementation needed to extend an existing payment platform without exposing gateway complexity to merchants.

Problem

The platform needed to support encrypted and decrypted transaction paths and select the correct behavior for each gateway.

Unsupported combinations had to fail safely and visibly rather than forwarding incompatible payloads.

Constraints

Sensitive token handling required strict data boundaries.

Routing decisions had to be deterministic and explainable.

Gateway differences could not fragment the merchant API.

Existing payment methods had to remain backward compatible.

My Role

Implemented backend token mapping, gateway decision logic, API extensions, and response behavior for Apple Pay transaction paths.

Worked within existing payment and gateway abstractions to keep the new flow secure and configurable.

Technical Design

Extended payment APIs with the wallet metadata required for downstream routing.

Mapped encrypted and decrypted token handling to explicit gateway capabilities.

Added validation and response mapping so unsupported combinations failed before unsafe forwarding.

Instrumented gateway-level behavior for controlled rollout and production diagnosis.

Tradeoffs

A capability-driven routing model added configuration complexity but avoided duplicating gateway-specific flows.

Strict validation made caller expectations more explicit while reducing incompatible token forwarding.

Impact

Enabled Apple Pay support across gateways requiring different token representations.

Strengthened the platform's ability to add tokenized wallets without fragmenting its merchant-facing contract.

What I learned

Wallet payment work is a security and routing problem before it is a checkout UI problem.

Gateway capability modeling should make unsupported combinations impossible to route silently.