Agentic Payments

Your card, never exposed

Bank-grade card vaulting. The AI gets single-use tokens. Your card number never leaves Nekuda.

💡

The Simple Version

Think of Nekuda as a secure vault for your card. beelz never knows your card number — it only has permission to request single-use tokens when it needs to pay a bill.

It's the same pattern your bank uses when it issues a virtual card number for a specific purchase. The real card stays safe; the token does the work.

How It Works

1

You add your card once

Your card is captured via Nekuda's secure iframe — the data goes directly to their vault and never touches beelz servers. We receive a mandate ID, not a card number.

2

The AI gets a single-use token

When a payment starts, beelz requests a reveal token from Nekuda. The token is valid for one use only and expires after the transaction. The AI types the card details into the biller's form and the token is gone.

3

Payment goes through

The biller charges your card through their normal payment flow — exactly as if you'd typed it yourself. No middleman taking a cut, no beelz-specific payment processor.

4

Confirmation captured

beelz screenshots the confirmation page and saves the confirmation number. You get the receipt — the biller sees you as the payer, because you are.

🔒Why This Is Secure

beelz is designed as the brains, not the vault. We orchestrate the payment — Nekuda handles the sensitive data.

PCI Level 1 compliant

The highest level of card data security, same as your bank

Zero card exposure

beelz never stores, logs, or transmits your card number

Single-use tokens

Each payment gets a fresh token that expires immediately after use

Why Not Just Store the Card?

😬

If beelz stored your card

  • beelz becomes a PCI compliance target
  • A breach would expose your card
  • You'd have to update it when your card changes
  • Unlimited charge potential with no per-use approval

With Nekuda vaulting

  • Card data never touches beelz
  • Each payment uses a fresh, expiring token
  • PCI Level 1 compliance handled by specialists
  • You can revoke access anytime, instantly

🏦 About Nekuda

Nekuda is an Israeli fintech company that built the first agentic payment mandate infrastructure — specifically designed for AI agents that need to charge a card on behalf of a user. beelz is one of their design partners.

Learn more about Nekuda →
Nekuda

Your card stays vaulted.

Add a card once. beelz handles every payment — with single-use tokens, not your real number.