Valid

GB/Z 104-2025Technical specification of web-service-based application programming interface (WAPI) in financial services (English PDF)

金融服务中基于互联网服务的应用程序编程接口技术规范

Preview PDF

This is a limited preview

Buy now to download the full PDF (44 pages)

Need quotation for your management?

Get a formal quotation for GB/Z 104-2025 in 30 minutes.

Issued by

SAMR; SAC

Level / Type

National · Recommended

Issue date

December 3, 2025

Implementation date

December 3, 2025

Scope

GB/Z 104-2025 is the English-translated version of 金融服务中基于互联网服务的应用程序编程接口技术规范.

GB/Z 104-2025 is a guiding technical document, equivalent to ISO/TS 23029:2020, that describes how to design web-service-based application programming interfaces for financial services. It covers the framework, functions and protocols of a web API ecosystem supporting online synchronous interaction, and sets out design principles, WAPI-related technologies, naming conventions, resource paths, API styles including REST, WebSocket and Webhook, data payload syntax, version control, and security and authentication, with an informative annex on a foreign exchange trading process. Logical models such as ISO 20022 are excluded, along with implementation-specific technical specifications, JSON APIs tied to ISO 20022 message formats, and specifications fixed by a particular legal framework. It is written for financial institutions and the application providers with which they exchange data. The document has no normative references; it was issued on 3 December 2025 and applies from that date.

Found what you need?

Document preview — GB/Z 104-2025

National Standard of the People's Republic of China

ICS
03.060
Classification
A 11

Issued by: State Administration for Market Regulation; Standardization Administration of the PRC

Contents

  • Preface
  • Introduction
  • 1.Scope
  • 2 Normative References
  • 3.Terms and Definitions
  • 4 Design Principles
  • 5.WAPI-related technologies
  • 6 Naming Conventions
  • 7 Resource Paths
  • 8 WAPI styles
  • 9.Data Payload Syntax
  • 10 Security and Authentication
  • 11 Use Case
  • Appendix A (Informative) Foreign Exchange Trading Process
  • References
  • Foreword

Foreword

This document is a standard or guiding technical document.

This document complies with the provisions of GB/T 1.1-2020 "Standardization Work Guidelines Part 1: Structure and Drafting Rules of Standardization Documents".

Drafting.

This document is equivalent to ISO /T S23029.2020 "Application Programming Interfaces for Internet Services in Financial Services". (Document type)

The model has been changed from an ISO technical specification to a national standardization guiding technical document of my country.

The following minimal editorial changes have been made to this document.

---To align with existing standards, the standard's name has been changed to "Technical Specification for Application Programming Interfaces Based on Internet Services in Financial Services".

Fan;

---Note added for groups using Uniform Resource Identifiers (URIs) (see 8.2.6);

---Added a note to the resource filter (see 8.2.8.4);

---Added a note to the security and authentication overview (see 10.1);

---Added a note regarding standard website certificates issued by globally trusted certificate authorities (see 10.2.1.2);

---Added a note for signing the JSON payload (see 10.6.3).

Introduction

With changes in business and regulatory rules in the financial sector, major global financial institutions are increasingly focusing on web application programming interfaces (Web APIs) for the financial industry.

There is an urgent need to standardize the development and design methodologies of APIs, particularly among financial institutions, intermediaries, and regulatory bodies that generate and consume data.

As interactions become more frequent and complex, the need for data transmission security is growing. This necessitates defining application programming interfaces (APIs) for development.

The logical and technical layering approach to APIs includes API design principles, web service-based API rules, data payload, and versioning.

Control can effectively guide financial institutions in defining standardized Web APIs, thereby further providing secure and user-friendly interfaces that meet the aforementioned needs.

Good, efficient technical guidance.

In my country, there are relatively few design specifications for Web APIs used for interaction between financial institution infrastructures. This document will help guide domestic financial institutions...

The development of WebAPI technology in the financial market helps financial institutions standardize application programming interfaces and achieve secure and efficient remote online data exchange.

This interactive approach is also of great significance for improving the standard system of my country's financial market.

1 Scope

This document outlines the framework for the application programming interface (API) ecosystem commonly found in financial services based on Internet (Web) services.

Framework, functions, and protocols to enable online synchronous interaction. Specific content includes.

--- Defines the logical and technical layering methods for developing APIs, including transformation rules, but excluding specific logical models [e.g.]

[ISO 20022 (all parts) model], but in specific scenarios, a logical model may be referenced to guide the definition of the API;

This design primarily focuses on RESTful presentation layer state transitions, but also includes architectural styles for other scenarios, such as web applications.

WebSocket and Webhook;

---Defines the API design principles, web service-based API rules, data payload, and version control;

--- This section lists considerations related to security, identity, and registration in API design.

This document applies to the design and application of Web service-based APIs in the financial services industry, providing guidance for internal operations within financial institutions and for collaboration between financial institutions and application providers.

Users share data and services to provide a reference.

This document does not apply to the following.

---Specific technical specifications for API implementation in financial services;

---A script object based on the ISO 20022 (all parts) specific message format, a lightweight data exchange format.

(JSON)API;

---Technical specifications defined or determined by a specific legal framework.

Note: Appendix A provides examples of how to process documents based on specific business areas or required API functionality.

2 Normative references

This document has no normative references.

3 Terms and Definitions

The following terms and definitions apply to this document.

3.1 Application programming interface

A set of well-defined methods, functions, protocols, transactions, or commands that application software calls using programming language development tools to use the service.

Note: WAPI is an application programming interface provided by the Web system that enables external interconnection and the construction of HTTP services.

3.2 Idempotency

Idempotency An operation is characterized by the fact that the effect of executing the same operation multiple times is the same as the effect of executing it once.

Note: Because it is difficult to restrict redundant access in a web environment, idempotent operations are often used in the design of web-based systems.

......
This preview omits tables, figures, formulas and parts of the technical clauses. The complete document — 44 pages — is available in the English PDF.

Similar standards

How to Download GB/Z 104-2025

  1. 1

    Add to cart

    Click "Download PDF" on this page and choose "Buy this standard". You can add more standards before checkout.

  2. 2

    Checkout

    Enter your email and billing details. Payment is processed securely by Stripe (cards or bank transfer). Prefer bank details? Request a quotation (min. order $300).

  3. 3

    Instant delivery (0–9 sec)

    Delivery is automatic: within seconds of payment you'll receive an email with a secure download link. The link stays valid for 72 hours.

  4. 4

    Invoice included

    A tax invoice is attached to the confirmation email. Need a custom invoice? Contact us.

Related Standards

English PDF
44 pages
Instant delivery (0–9 sec)
Invoice included
View Cart

Secure payment via Stripe

Payments accepted

VisaMastercardAmerican ExpressApple PayGoogle PayStripe

GB/Z 104-2025

$725.00