curl --request POST \
--url https://api.skinshark.gg/user/wallet/payout/crypto/withdraw \
--header 'Content-Type: application/json' \
--header 'api-key: <api-key>' \
--data '
{
"destination": "<string>",
"amountCents": "<string>",
"externalId": "<string>",
"forSubUser": "<string>",
"maxFeeUsdCents": "<string>"
}
'import requests
url = "https://api.skinshark.gg/user/wallet/payout/crypto/withdraw"
payload = {
"destination": "<string>",
"amountCents": "<string>",
"externalId": "<string>",
"forSubUser": "<string>",
"maxFeeUsdCents": "<string>"
}
headers = {
"api-key": "<api-key>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {'api-key': '<api-key>', 'Content-Type': 'application/json'},
body: JSON.stringify({
destination: '<string>',
amountCents: '<string>',
externalId: '<string>',
forSubUser: '<string>',
maxFeeUsdCents: '<string>'
})
};
fetch('https://api.skinshark.gg/user/wallet/payout/crypto/withdraw', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://api.skinshark.gg/user/wallet/payout/crypto/withdraw",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'destination' => '<string>',
'amountCents' => '<string>',
'externalId' => '<string>',
'forSubUser' => '<string>',
'maxFeeUsdCents' => '<string>'
]),
CURLOPT_HTTPHEADER => [
"Content-Type: application/json",
"api-key: <api-key>"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://api.skinshark.gg/user/wallet/payout/crypto/withdraw"
payload := strings.NewReader("{\n \"destination\": \"<string>\",\n \"amountCents\": \"<string>\",\n \"externalId\": \"<string>\",\n \"forSubUser\": \"<string>\",\n \"maxFeeUsdCents\": \"<string>\"\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("api-key", "<api-key>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://api.skinshark.gg/user/wallet/payout/crypto/withdraw")
.header("api-key", "<api-key>")
.header("Content-Type", "application/json")
.body("{\n \"destination\": \"<string>\",\n \"amountCents\": \"<string>\",\n \"externalId\": \"<string>\",\n \"forSubUser\": \"<string>\",\n \"maxFeeUsdCents\": \"<string>\"\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://api.skinshark.gg/user/wallet/payout/crypto/withdraw")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["api-key"] = '<api-key>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"destination\": \"<string>\",\n \"amountCents\": \"<string>\",\n \"externalId\": \"<string>\",\n \"forSubUser\": \"<string>\",\n \"maxFeeUsdCents\": \"<string>\"\n}"
response = http.request(request)
puts response.read_body{
"requestId": "<string>",
"success": true,
"data": {
"id": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"status": "pending_callback",
"chain": "<string>",
"token": "<string>",
"destination": "<string>",
"amountCents": "<string>",
"feeCents": "<string>",
"externalId": "<string>",
"forUserId": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"forUserExternalId": "<string>",
"createdAt": "2023-11-07T05:31:56Z"
},
"error": {
"code": 1500,
"key": "INSUFFICIENT_BALANCE",
"message": "Insufficient balance"
}
}{
"requestId": "<string>",
"success": true,
"data": "<unknown>",
"error": {
"code": 1500,
"key": "INSUFFICIENT_BALANCE",
"message": "Insufficient balance"
}
}Create payout withdrawal
Auth context: merchant — API key only (JWT not accepted; this is the one
write endpoint in the payout group). Requires cryptoPayoutEnabled=true, a
provisioned webhook signing secret, and at least one active CallbackUrl
registered for the merchant.
Idempotent on
externalId. Retrying the sameexternalIdreturns the original withdrawal unchanged (idempotent replay) — it never double-spends or errors. The1824conflict is only returned on a genuine concurrent duplicate racing the first create.
Withdrawals are per (chain, token), not from a single pool. SkinShark does not hold cross-chain liquidity. You can only withdraw from a chain × token combination you previously deposited to. Depositing USDC on Base and asking to withdraw USDC on Ethereum will fail with
1822 CRYPTO_PAYOUT_INSUFFICIENT_BALANCEeven if you have plenty of USDC on Base. UseGET /payout/crypto/balancesto see what’s withdrawable on each chain.
Flow:
- Live fee computed; rejected with
1821ifmaxFeeUsdCentsis set and the live fee exceeds it. No state mutated. - Atomic transaction: sidecar decremented by
amountCents + liveFeeUsdCents(rejected with1822if insufficient),payout_withdraw_lockledger posting, withdrawal row created inpending_callback. - Synchronous approval call: a signed POST of type
payout.crypto.withdraw.approvalis sent to yourCallbackUrl(5s timeout), separate from the async lifecycle queue. Return 2xx to approve (release funds) or 4xx to reject. The request carrieswebhook-id,webhook-timestamp, andwebhook-signatureheaders — the signature is always present (payouts require a provisioned signing secret), so verify it before acting. - On 2xx →
queued→broadcast→confirmed. On 4xx → immediate refund. On 5xx/timeout/network → retry up to 3 times, then refund. Any rejection, failure, or on-chain revert resolves to the single terminal statusrefunded. - Lifecycle events (
payout.crypto.withdraw.broadcast,.confirmed, and the single terminal.refunded) are delivered asynchronously via the standard signed webhook queue. There is no separate.faileddelivery.
curl --request POST \
--url https://api.skinshark.gg/user/wallet/payout/crypto/withdraw \
--header 'Content-Type: application/json' \
--header 'api-key: <api-key>' \
--data '
{
"destination": "<string>",
"amountCents": "<string>",
"externalId": "<string>",
"forSubUser": "<string>",
"maxFeeUsdCents": "<string>"
}
'import requests
url = "https://api.skinshark.gg/user/wallet/payout/crypto/withdraw"
payload = {
"destination": "<string>",
"amountCents": "<string>",
"externalId": "<string>",
"forSubUser": "<string>",
"maxFeeUsdCents": "<string>"
}
headers = {
"api-key": "<api-key>",
"Content-Type": "application/json"
}
response = requests.post(url, json=payload, headers=headers)
print(response.text)const options = {
method: 'POST',
headers: {'api-key': '<api-key>', 'Content-Type': 'application/json'},
body: JSON.stringify({
destination: '<string>',
amountCents: '<string>',
externalId: '<string>',
forSubUser: '<string>',
maxFeeUsdCents: '<string>'
})
};
fetch('https://api.skinshark.gg/user/wallet/payout/crypto/withdraw', options)
.then(res => res.json())
.then(res => console.log(res))
.catch(err => console.error(err));<?php
$curl = curl_init();
curl_setopt_array($curl, [
CURLOPT_URL => "https://api.skinshark.gg/user/wallet/payout/crypto/withdraw",
CURLOPT_RETURNTRANSFER => true,
CURLOPT_ENCODING => "",
CURLOPT_MAXREDIRS => 10,
CURLOPT_TIMEOUT => 30,
CURLOPT_HTTP_VERSION => CURL_HTTP_VERSION_1_1,
CURLOPT_CUSTOMREQUEST => "POST",
CURLOPT_POSTFIELDS => json_encode([
'destination' => '<string>',
'amountCents' => '<string>',
'externalId' => '<string>',
'forSubUser' => '<string>',
'maxFeeUsdCents' => '<string>'
]),
CURLOPT_HTTPHEADER => [
"Content-Type: application/json",
"api-key: <api-key>"
],
]);
$response = curl_exec($curl);
$err = curl_error($curl);
curl_close($curl);
if ($err) {
echo "cURL Error #:" . $err;
} else {
echo $response;
}package main
import (
"fmt"
"strings"
"net/http"
"io"
)
func main() {
url := "https://api.skinshark.gg/user/wallet/payout/crypto/withdraw"
payload := strings.NewReader("{\n \"destination\": \"<string>\",\n \"amountCents\": \"<string>\",\n \"externalId\": \"<string>\",\n \"forSubUser\": \"<string>\",\n \"maxFeeUsdCents\": \"<string>\"\n}")
req, _ := http.NewRequest("POST", url, payload)
req.Header.Add("api-key", "<api-key>")
req.Header.Add("Content-Type", "application/json")
res, _ := http.DefaultClient.Do(req)
defer res.Body.Close()
body, _ := io.ReadAll(res.Body)
fmt.Println(string(body))
}HttpResponse<String> response = Unirest.post("https://api.skinshark.gg/user/wallet/payout/crypto/withdraw")
.header("api-key", "<api-key>")
.header("Content-Type", "application/json")
.body("{\n \"destination\": \"<string>\",\n \"amountCents\": \"<string>\",\n \"externalId\": \"<string>\",\n \"forSubUser\": \"<string>\",\n \"maxFeeUsdCents\": \"<string>\"\n}")
.asString();require 'uri'
require 'net/http'
url = URI("https://api.skinshark.gg/user/wallet/payout/crypto/withdraw")
http = Net::HTTP.new(url.host, url.port)
http.use_ssl = true
request = Net::HTTP::Post.new(url)
request["api-key"] = '<api-key>'
request["Content-Type"] = 'application/json'
request.body = "{\n \"destination\": \"<string>\",\n \"amountCents\": \"<string>\",\n \"externalId\": \"<string>\",\n \"forSubUser\": \"<string>\",\n \"maxFeeUsdCents\": \"<string>\"\n}"
response = http.request(request)
puts response.read_body{
"requestId": "<string>",
"success": true,
"data": {
"id": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"status": "pending_callback",
"chain": "<string>",
"token": "<string>",
"destination": "<string>",
"amountCents": "<string>",
"feeCents": "<string>",
"externalId": "<string>",
"forUserId": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
"forUserExternalId": "<string>",
"createdAt": "2023-11-07T05:31:56Z"
},
"error": {
"code": 1500,
"key": "INSUFFICIENT_BALANCE",
"message": "Insufficient balance"
}
}{
"requestId": "<string>",
"success": true,
"data": "<unknown>",
"error": {
"code": 1500,
"key": "INSUFFICIENT_BALANCE",
"message": "Insufficient balance"
}
}Authorizations
Your raw API key. Generate, rotate, and revoke keys from the merchant
dashboard. Keys can optionally be bound to one or more allowed source
IPs — requests from any other IP are rejected with API_KEY_IP_DENIED.
Body
ethereum, base, arbitrum, optimism, bsc Stables only at MVP.
USDT, USDC EVM address that will receive the funds on-chain.
^0x[a-fA-F0-9]{40}$USD cents to send to the destination. Fee is added on top and debited together.
^\d+$Partner-supplied reference. Echoed in the approval callback and all lifecycle events so
you can match against your own records. Must be unique per merchant; duplicate ⇒ 1824.
1 - 128Optional label — sub-user id (UUID) or your externalId for that sub-user, scoped
to the calling merchant. Pure label, not auth scope: funding always comes from
the merchant's payout custody; the sub-user reference is recorded for audit and
echoed in the approval callback / lifecycle events.
1 - 128Optional fee cap. If the live fee at submission exceeds this cap, the request is
rejected with 1821 and no state is mutated. Useful for declining high-gas moments.
^\d+$