Docs

Fincore · API reference · Accounts

Block an account

PUT /v1/clients/{clientId}/accounts/{id}/block
Try it ▸

Base URL https://apicore.stg.finch.lat · operationId blockAccount

Blocks an active account. Blocked accounts can be reactivated.

Authorization

bearerAuth Bearer token

JWT bearer token created from client credentials. Use the Authentication guide to generate a token before calling protected endpoints.

Path parameters

clientId string (uuid) required

Client UUID.

Example c2d1d1e3-3340-4170-980e-e9269bbbc551
id string (uuid) required

Account UUID.

Example 750ab428-b401-4b58-8a95-502bcb7b1bf8

Responses

200 Account blocked. application/json
id string (uuid) required

Fincore private account UUID.

bankId string (uuid) required

Bank UUID associated with the private account.

clientId string (uuid) required

Client UUID associated with the private account.

clientBankAdapterId string (uuid) required

Bank adapter configuration UUID used by this private account.

accountId string (uuid) required

Core account UUID backing the private account.

instrumentId string (uuid) required

Instrument UUID linked to this private account.

ownerId string (uuid) required

UUID of the client or Business Unit that owns the private account.

ownerType string required

Type of entity that owns the private account.

CLIENT BUSINESS CUSTOMER
accountNumber string required

Internal account number assigned by the bank adapter.

clabeNumber string required

CLABE assigned to the private account.

availableBalance string required

Available balance as a decimal string with two decimals.

accountType string required

Private account type.

CENTRALIZING_ACCOUNT DISPERSION_ACCOUNT PRIVATE_ACCOUNT SAVINGS_ACCOUNT CHECKING_ACCOUNT
accountStatus string required

Private account lifecycle status.

ACTIVE BLOCKED SUSPENDED CANCELLED
audit object required

Lifecycle timestamps for the private account.

createdAt audit.createdAt string (date-time)

Timestamp when the private account was created.

updatedAt audit.updatedAt string (date-time)

Timestamp when the private account was last updated.

deletedAt audit.deletedAt string | null

Timestamp when the private account was deleted, or null.

blockedAt audit.blockedAt string | null

Timestamp when the private account was blocked, or null.

activatedAt audit.activatedAt string | null

Timestamp when the private account was activated, or null.

suspendedAt audit.suspendedAt string | null

Timestamp when the private account was suspended, or null.

bankAdapter string required

Bank adapter that operates the private account.

400 Block request is invalid. Possible causes: malformed clientId or account id, account cannot transition to BLOCKED, or account type does not support blocking. application/json
code integer required

gRPC status code mapped to HTTP.

message string required

General error message.

details array of ErrorDetail required

Detailed error causes returned by the service.

reason details[].reason string required

Machine-readable error category.

DATA_ERROR FAILED_PRECONDITION MISSING_REQUIRED_FIELDS RESOURCE_NOT_FOUND UNAUTHORIZED PERMISSION_DENIED UNIQUE_VIOLATION INTERNAL
domain details[].domain string required

Service domain that produced the error.

metadata details[].metadata object required

Additional error metadata, including the detailed message and HTTP code.

error_detail details[].metadata.error_detail string

Human-readable detail returned by the service.

http_code details[].metadata.http_code string

HTTP status code associated with this error.

error_code details[].metadata.error_code string

Optional internal error catalog code when available.

401 Missing, expired, invalid, or environment-mismatched API key or bearer token. See Authentication. application/json
code integer required

gRPC status code mapped to HTTP.

message string required

General error message.

details array of ErrorDetail required

Detailed error causes returned by the service.

reason details[].reason string required

Machine-readable error category.

DATA_ERROR FAILED_PRECONDITION MISSING_REQUIRED_FIELDS RESOURCE_NOT_FOUND UNAUTHORIZED PERMISSION_DENIED UNIQUE_VIOLATION INTERNAL
domain details[].domain string required

Service domain that produced the error.

metadata details[].metadata object required

Additional error metadata, including the detailed message and HTTP code.

error_detail details[].metadata.error_detail string

Human-readable detail returned by the service.

http_code details[].metadata.http_code string

HTTP status code associated with this error.

error_code details[].metadata.error_code string

Optional internal error catalog code when available.

403 Account does not belong to the authenticated client or caller is not allowed to change the account state. application/json
code integer required

gRPC status code mapped to HTTP.

message string required

General error message.

details array of ErrorDetail required

Detailed error causes returned by the service.

reason details[].reason string required

Machine-readable error category.

DATA_ERROR FAILED_PRECONDITION MISSING_REQUIRED_FIELDS RESOURCE_NOT_FOUND UNAUTHORIZED PERMISSION_DENIED UNIQUE_VIOLATION INTERNAL
domain details[].domain string required

Service domain that produced the error.

metadata details[].metadata object required

Additional error metadata, including the detailed message and HTTP code.

error_detail details[].metadata.error_detail string

Human-readable detail returned by the service.

http_code details[].metadata.http_code string

HTTP status code associated with this error.

error_code details[].metadata.error_code string

Optional internal error catalog code when available.

404 Account was not found for the supplied client. application/json
code integer required

gRPC status code mapped to HTTP.

message string required

General error message.

details array of ErrorDetail required

Detailed error causes returned by the service.

reason details[].reason string required

Machine-readable error category.

DATA_ERROR FAILED_PRECONDITION MISSING_REQUIRED_FIELDS RESOURCE_NOT_FOUND UNAUTHORIZED PERMISSION_DENIED UNIQUE_VIOLATION INTERNAL
domain details[].domain string required

Service domain that produced the error.

metadata details[].metadata object required

Additional error metadata, including the detailed message and HTTP code.

error_detail details[].metadata.error_detail string

Human-readable detail returned by the service.

http_code details[].metadata.http_code string

HTTP status code associated with this error.

error_code details[].metadata.error_code string

Optional internal error catalog code when available.

This request is in the Monato · Fincore Postman collection, folder Accounts.Download collection

Request

curl -X PUT "https://apicore.stg.finch.lat/v1/clients/c2d1d1e3-3340-4170-980e-e9269bbbc551/accounts/750ab428-b401-4b58-8a95-502bcb7b1bf8/block" \
  -H "Authorization: Bearer $TOKEN"

Response

{
  "id": "750ab428-b401-4b58-8a95-502bcb7b1bf8",
  "bankId": "9d84b03a-28d1-4898-a69c-38824239e2b1",
  "clientId": "c2d1d1e3-3340-4170-980e-e9269bbbc551",
  "clientBankAdapterId": "5b3a1b67-ab59-4cc1-8fc6-1d558b32b237",
  "accountId": "24a726ac-180d-48df-82bc-711f2788a46f",
  "instrumentId": "ab502fce-1162-42f3-99d6-972989a06049",
  "ownerId": "c2d1d1e3-3340-4170-980e-e9269bbbc551",
  "ownerType": "CLIENT",
  "accountNumber": "000001233635",
  "clabeNumber": "734180000001233635",
  "availableBalance": "0.00",
  "accountType": "PRIVATE_ACCOUNT",
  "accountStatus": "ACTIVE",
  "audit": {
    "createdAt": "2025-04-12 11:00:56.264527-06:00",
    "updatedAt": "2025-04-12 11:00:56.264527-06:00",
    "deletedAt": null,
    "blockedAt": null,
    "activatedAt": null,
    "suspendedAt": null
  },
  "bankAdapter": "SIES"
}