Skip to content
Back to BlogGuides

The Merchant Onboarding Checklist

Peneu Editorial Team · 22 January 2026 · Updated 26 September 2026 · 7 min read

Cover illustration for a merchant onboarding checklist

Payment providers are responsible for the merchants they serve. RBI's 2025 Master Direction on payment aggregators, for example, makes the aggregator that onboards a merchant responsible for its due diligence, and includes a security assessment during onboarding. That's why onboarding asks what it asks. Most delays aren't the provider being slow; they're a missing document or an unfinished website. This checklist is designed to get you through first time.

Before you apply

Five minutes of preparation saves days.

  • Write a two-line description of what you sell, to whom, and how they pay. Reviewers compare it with your website.
  • Estimate monthly volume and average order value. Be realistic; big surprises later trigger reviews.
  • Check your business isn't in a prohibited category. Payments for online money games, for instance, are prohibited under the Online Gaming Act, 2025.
  • Make sure the name on your bank account matches your business's legal name.

Documents, by type of business

Every provider sets its own list under its KYC rules, but this is the usual core.

Send clear, complete, current copies together. Partial submissions tend to go to the back of the queue.

Documents commonly asked for at onboarding
Business typeBusiness documentsPeople
Sole proprietorshipProof the business exists; PANProprietor's identity and address
Partnership or LLPDeed or registration; firm PANPartners' identity
CompanyIncorporation documents; company PAN; GST where applicableDirectors, signatories and beneficial owners
Trust or societyRegistration and governing documents; PANTrustees or office-bearers

Your website, as a reviewer sees it

For online businesses, the website is part of the application. Reviewers check that it matches what you declared, and that a customer can see what they're buying and on what terms before paying.

  • Products or services with prices, visible before checkout
  • Terms and conditions
  • Refund and cancellation policy, with timelines
  • Privacy policy
  • Contact details a customer can actually use
  • Shipping or delivery policy, if you ship goods
  • No placeholder pages, 'coming soon' sections or broken links

Your settlement account

Money will be settled to a bank account in your business's name, and providers verify it, typically by checking that the account is active and the name matches. A mismatch between your legal name, your PAN and your bank account is the most common reason onboarding stalls at the last step.

Integration and go-live readiness

Approval isn't the finish line. Before taking real payments:

  • Test success, failure, timeout and refund cases in the sandbox.
  • Mark orders paid from the provider's server notice, not the customer's browser.
  • Verify webhook signatures and handle duplicates.
  • Store live keys on your server only, and rotate test keys out.
  • Know where settlement reports come from and who reconciles them.

After you're live

Providers keep monitoring merchants and may ask for updated documents when your business changes: new products, a new website, a change in ownership or a jump in volume. Telling them first is always smoother than being asked.

Official sources

Last reviewed . Examples, amounts and screens marked illustrative are not Peneu figures.

Questions about your own payment setup?

Talk to Peneu

Related reading