One Payments Pte. Ltd. logotype
© 2026 One Payments Pte. Ltd.

What Is a Payment Gateway?

A payment gateway is the technology that connects your checkout — whether a website, app, or point-of-sale terminal — to the card networks and payment methods your customers use. Every time someone pays online, a payment gateway is doing the work in the background: securely transmitting the payment details, requesting authorisation, and confirming the result in seconds.

How a payment gateway works

Think of a payment gateway as a secure message relay for payment data. When a customer enters their card details at checkout and hits "Pay", here is what happens:

  1. The gateway encrypts the payment information and sends it to the acquiring bank (the merchant's bank).
  2. The acquiring bank routes the request through the relevant card network — Visa, Mastercard, or another network.
  3. The card network forwards it to the cardholder's issuing bank for approval.
  4. The issuing bank returns an approval or decline.
  5. The gateway relays that result back to the checkout — usually within a second or two.

The customer sees "Payment successful" or a decline message. Behind that simple result is a chain of authorisations moving across multiple systems, all orchestrated by the gateway.

Gateways also handle important security work: encrypting card data, running tokenisation (replacing card numbers with safe tokens), and supporting 3D Secure authentication. A gateway handles the authorisation step only — it does not hold your money. Funds settlement (the transfer into your merchant account) is handled by the acquiring bank, usually within a few business days. Many businesses use a payment service provider that bundles the gateway, acquiring, and other services into one product, so you interact with a single platform rather than managing them separately.

Hosted checkout vs API gateway

Gateways come in different integration styles depending on how much control you want over the checkout experience.

A hosted checkout redirects customers to a payment page managed by the provider. It is fast to deploy and the provider handles PCI compliance for that page — ideal if your team wants to launch quickly without building a form from scratch.

An API gateway lets you build the checkout UI yourself and pass payment data directly via code. This gives you full control over the experience, at the cost of more development work and stricter PCI scope.

If you are evaluating options in Singapore, ONE's payment gateway in Singapore covers supported methods, pricing, and how to get started.

What to look for in a payment gateway

When comparing gateways, the key factors to weigh are:

  • Supported payment methods — cards alone are rarely enough. Local rails (like PayNow in Singapore) and digital wallets (Apple Pay, Google Pay) matter for conversion.
  • Pricing transparency — watch for per-transaction fees, monthly fees, and international card surcharges. Understanding the full cost up front avoids surprises.
  • Integration options — hosted checkout, payment links, and direct API access let you launch fast and add sophistication later.
  • Settlement speed — how quickly approved funds reach your account matters for cash flow.
  • Developer documentation — clear API references and sandbox environments make integrations faster.

Frequently Asked Questions

What is the difference between a payment gateway and a payment processor?
These terms are often used interchangeably, but technically a gateway handles authorisation (the data relay) while a processor handles the movement of funds between banks. In practice, most modern payment providers combine both functions into a single service.
Is a payment gateway the same as a merchant account?
No. A merchant account is a holding account where funds sit after a transaction is approved, before being settled into your business bank account. A gateway is the technology that authorises transactions — they work together but are separate things.
How secure is a payment gateway?
Reputable gateways encrypt card data in transit, use tokenisation to avoid storing raw card numbers, and support 3D Secure for additional cardholder authentication. PCI DSS compliance governs how payment data must be handled throughout the chain.
Do I need a developer to set up a payment gateway?
It depends on the integration type. A hosted checkout or payment links can be set up with minimal or no code. A direct API integration requires developer work but offers more flexibility over the checkout experience.
How long does it take to get approved funds after a payment?
Authorization happens in seconds, but settlement — the actual transfer of funds — typically takes a few business days depending on your provider and account type.

Ready to take payments online?

See how it works