Physical card shipping (one of four independent status axes)
x-on-behalf-of required
Physical cards have four independently progressing status axes: application / inventory / shipping / card. None may be derived from another. This endpoint returns only the shipping axis. To determine whether the user can bind the card, inspect the application status, not delivered here.
⚠ Upstream processing / card production processing belong to the restocking batch, not the user's application. They are therefore absent here. During that stage this endpoint returns an empty array, which does not indicate a problem.
Operations staff enter shipping status manually; we have not integrated a carrier API. Polling is therefore not useful: asking again does not advance anything.
Ordered by update time descending. An application may have several shipments, such as a replacement shipment or a return followed by reshipping. Not paginated.
Path Parameters
| Field | Type | Required | Description |
|---|---|---|---|
id |
string | Required | Application ID. Accepted with or without the cap_ prefix. |
Request Headers
| Field | Type | Required | Description |
|---|---|---|---|
x-on-behalf-of |
string | Required | The member on whose behalf to call. Must own this application; otherwise returns 404. |
Response
status: draft · created · awaiting_pickup · in_transit ·
out_for_delivery · delivered (the carrier reports delivery) · received (the user confirms receipt,
deliberately separate from the preceding state), plus six exception states: address_issue · delivery_failed ·
stalled · refused · returning · returned · lost · damaged.
Missing time values are empty strings, not null.{
"data": [
{
"status": "in_transit",
"carrier": "DHL",
"tracking_no": "1234567890",
"shipped_at": "2026-08-05T09:00:00.000Z",
"delivered_at": "",
"updated_at": "2026-08-07T14:22:11.000Z"
}
],
"next_cursor": null,
"has_more": false
}not_found: the application does not exist or does not belong to this member/merchant.curl -X GET 'https://api.zinfra.vip/v1/cards/applications/{id}/shipment' \
-H 'x-auth-token: Bearer $TOKEN' \
-H 'x-on-behalf-of: $MEMBER_ID'const res = await fetch("https://api.zinfra.vip/v1/cards/applications/{id}/shipment", {
method: "GET",
headers: {
"x-auth-token": "Bearer $TOKEN",
"x-on-behalf-of": "$MEMBER_ID",
},
});
// Keep monetary amounts as strings, never numbers.
const data = await res.json();import requests
res = requests.get(
"https://api.zinfra.vip/v1/cards/applications/{id}/shipment",
headers={
"x-auth-token": "Bearer $TOKEN",
"x-on-behalf-of": "$MEMBER_ID",
},
)
# Use Decimal(str(...)) for amounts, not float.
data = res.json()req, _ := http.NewRequest("GET", "https://api.zinfra.vip/v1/cards/applications/{id}/shipment",
nil)
req.Header.Set("x-auth-token", "Bearer $TOKEN")
req.Header.Set("x-on-behalf-of", "$MEMBER_ID")
res, err := http.DefaultClient.Do(req)
// Decode amount fields as string, not float64.HttpRequest req = HttpRequest.newBuilder()
.uri(URI.create("https://api.zinfra.vip/v1/cards/applications/{id}/shipment"))
.header("x-auth-token", "Bearer $TOKEN")
.header("x-on-behalf-of", "$MEMBER_ID")
.method("GET", HttpRequest.BodyPublishers.noBody())
.build();
// Use String / BigDecimal for amounts, not double.$ch = curl_init('https://api.zinfra.vip/v1/cards/applications/{id}/shipment');
curl_setopt_array($ch, [
CURLOPT_CUSTOMREQUEST => 'GET',
CURLOPT_RETURNTRANSFER => true,
CURLOPT_HTTPHEADER => [
'x-auth-token: Bearer $TOKEN',
'x-on-behalf-of: $MEMBER_ID',
],
]);
$res = curl_exec($ch);
// Use bcmath / strings for amounts, not floatval.
{
"data": [
{
"status": "in_transit",
"carrier": "DHL",
"tracking_no": "1234567890",
"shipped_at": "2026-08-05T09:00:00.000Z",
"delivered_at": "",
"updated_at": "2026-08-07T14:22:11.000Z"
}
],
"next_cursor": null,
"has_more": false
}