PayLumiaDevelopers

Operate

Sandbox & testing

Prove every path in sandbox before you ask for a go-live review. Most reviews stall on the unhappy paths, so start there.

How sandbox behaves

  • Sandbox is a separate deployment at https://api.sandbox.paylumia.com (checkout https://pay.sandbox.paylumia.com) with plm_test_ credentials, its own webhook URL and secret. It is mock only — no operator charges a real line.
  • It runs the same API, the same checkout pages and the same events as production.
  • Test lines and the way to trigger declines are provided by the Hadruvo integration team when your application is set up. Ask them for the current list.

After sandbox: go-live

When the cases below pass in sandbox, ask for a go-live review. Production uses live Orange with plm_live_ credentials. See environments & go-live.

Test cases to pass

CaseWhat you doWhat must happen
SuccessComplete checkout with a test lineAccess granted from payment.succeeded, not from the return URL
DeclineUse a line set up to failpayment.failed received; the user can start a new payment
AbandonedOpen checkout, then leaveStatus becomes EXPIRED after expiresAt; nothing granted
CancelCall POST …/cancel while REQUIRES_ACTIONStatus CANCELED; nothing granted
RetryReplay the same create with the same Idempotency-KeySame payment returned; no second session
Duplicate eventDeliver the same webhook twiceSecond delivery is a no-op
Bad signatureSend an event with a wrong signatureRejected with 400; nothing processed
Token expiryLet a token expire mid-sessionClient fetches a new one transparently
Subscription endCancel with PERIOD_END, then NOWAccess kept until cancelAt, then removed on entitlement.revoked

Testing sessions

When your sandbox integration is ready, book a testing session with the integration team. Send your test report (the table above, with results) before the session so time is spent on fixes, not on setup.

Let your agent do the report

The PayLumia skill turns this list into a pass / fix report for your codebase.