DGFT Launches API Facility to Streamline Certificate of Origin Process | Today’s news
The Directorate General of Foreign Trade (DGFT) on Monday launched an Open Application Programming Interface (API) tool for issuing and verifying Certificates of Origin (CoO) through the Trade Connect e-platform, enabling eligible exporters to integrate their Enterprise Resource Planning (ERP), accounting and other business software directly with DGFT’s CoO system.
The facility is aimed at reducing repetitive data entry, minimizing errors and speeding up CoO applications, the Commerce Department said in a statement.
Currently, exporters have to enter CoO related information separately on the DGFT platform even though the same data is already available in their trading software. Under the new API facility, application data can be transferred electronically from the exporter’s system to the DGFT platform, eliminating duplicate entries.
The facility covers both preferential and non-preferential CoOs. Preferential CoOs are issued under Free Trade Agreements (FTAs), Regional Trade Agreements (RTAs) and Preferential Trade Agreements (PTAs) that allow exporters to claim valid tariff concessions in importing countries. Non-preferential CoOs are used for customs clearance, regulatory compliance, trade remedies and other trade-related purposes and do not provide tariff benefits.
Exporters can obtain API credentials through the API Management section of the CoO portal and register the IP addresses from which their systems will connect, DGFT said.
There are three APIs: authentication token API for secure login; CoO file API for sending requests and receiving certificates; and the Certificate Validation API for validating issued certificates.
The system will maintain a transaction ledger for each application, providing exporters with an electronic record of its status. Applications can be tracked in stages, including draft, processing, approval, certificate issuance, and rejection. The book will also record the confirmation ID, file number, file date and certificate number.
The DGFT said that the API framework includes several security safeguards for reliable information exchange. Requests and responses are digitally signed using SHA-256 RSA digital signatures with 2048-bit X.509 certificates to ensure data integrity, sender authentication, and non-repudiation.
Passwords are protected using PBKDF2 hashing with a dynamic salt, while access to the system is restricted to IP addresses whitelisted by exporters. Each access token remains valid for 60 minutes.
The facility covers major trade agreements and certification schemes, including India-Japan CEPA, India-Korea CEPA, SAFTA, SAPTA, ASEAN-India FTA, India-Singapore CECA, India-Malaysia CECA, India-Chile PTA, India-Mercosur PTA, India-UAE CEPA, India-Australia, India CEPA-UKETA, India-Australia-CEPA, India-CPAO Generalized System of Preferences and CoO Non-Preference Scheme.
The system will automatically apply the relevant fields, origin criteria and validation rules based on the trade agreement or certification system selected by the exporter.
The registration, verification and technical integration process is available on the Trade Connect e-platform along with a detailed help manual attached to the trade notification.
Exporters, Export Promotion Councils, designated CoO issuing agencies and trade authorities can approach the DGFT Helpdesk for queries, suggestions and feedback on the e-Certificate of Origin module.
The device was introduced through Trade Notice No. 25/2026-27 dated September 7.