Skip to navigation

Account and Transaction API

The Account and Transaction API provides Customer-authorised, account-specific data for all American Express® proprietary Card products including Personal, Small Business and Corporate Cards for parties certified under the Payment Service Directive 2 (PSD2) legislation.

American Express publishes an overview for this product but no API specification, so there is no endpoint reference to show.

Last Updated: July 14, 2026 The Account and Transaction API enables access to Customer-authorized, account-specific data for certain American Express® proprietary Card products including Personal, Small Business and Corporate Cards. Account Information Service Providers (AISP) authorized to access payment accounts under the Payment Service Directive 2 (PSD2) legislation are enabled to access payment account data from the following entities:

  • American Express Services Europe Limited, in the UK.

  • American Express Carte - France SA, in France.

Why it’s great

Data Quality and Integrity

Authentic data, directly from the source.

Simplicity

Quick and easy self-service integrations to improve time-to-market and foster innovation.

Interoperability

Designed to implement working group standards from OBIE (Open Banking UK), OpenID Connect, and OAuth 2.0 for ease of integration.

Safety and Security

Utilizes American Express Login and Authorization components for a secure and familiar authorization process that puts the control in the hands of the Customer.

How it works

1

Process Step 1

Card Members request to have their American Express transaction information shared and displayed on an authorized Partner site or AppScan® and scans the Merchant’s QR code with the Issuer’s mobile application.

2

Process Step 2

Card Members authenticate their access using their American Express credentials (three-legged OAuth) on either their browser or American Express Mobile Application and select which Card(s) to enroll.

3

Process Step 3

Card Members can then access their requested transaction information on the authorized Partner site or app for the duration of their enrollment.

Technical Highlights

  • RESTful APIs with JSON format for data exchange.
  • APIs use two-way TLS for transport encryption.
  • OpenID Connect and OAuth 2.0 Protocol for API access.
  • APIs can be accessed through any channel (desktop, tablet, mobile, or web) and from any technology stack.

What You Need To Go Live

  • An Active Electronic Identification and Trust Services (eIDAS) or UK Open Banking Certificate (OBWAC) Production Certificate signed by an approved Provider.
  • Allocate time for pre-Production testing.

Metrics

  • The Account and Transaction API delivers an excellent Open Banking service and maintains transparency about our performance. Our Q2 2026 metrics for France and the United Kingdom are: Availability: The uptime, measured based on the availability status of the following interfaces. Average Availability: Account and Transaction API = 99.92% MYCA Customer Interface = 99.98% MYCA Mobile = 99.96% Jurisdiction Statements on Customers’ American Express Availability

France Account and Transaction API: Online account (Customer Interface): Mobile account (Mobile Interface):

99.92% 99.98% 99.97%

U.K. Account and Transaction API: Online account (Customer Interface): Mobile account (Mobile Interface):

99.92% 99.98% 99.94%

Performance: The speed of responses, measured based on the Average Response Time in milliseconds (ms). Average Response Time: Account and Transaction API = 539 ms MYCA Customer Interface = 3650 ms MYCA Mobile = 2119 ms Jurisdiction Statements on Customers’ American Express Performance:

France Account and Transaction API: Online account (Customer Interface): Mobile account (Mobile Interface):

539 ms 3345 ms 2124 ms

U.K. Account and Transaction API: Online account (Customer Interface): Mobile account (Mobile Interface):

539 ms 3015 ms 1682 ms

More Detailed API Performance Data

  • Download daily U.K. performance metrics for the API here.