A checkout you embed, host, or build — never one you're stuck with.
Embedded, hosted, or fully custom checkout with secure card fields, 3-D Secure, address and discount handling, and your server in control of the price.
Three ways in, one engine underneath
| Approach | What you get |
|---|---|
| Embedded checkout | Drop a payment step — or the whole checkout, with cart, address, and payment — into your own page as a React component or a plain iframe |
| Hosted checkout | Send buyers to a Throttle-hosted page in your branding and get them back when they’ve paid |
| Secure fields | Place card number, expiry, CVV, and postal fields directly in your own form, styled to match |
Whichever you choose, your server creates the checkout session and sets the price, and card data is collected by the processor’s hosted fields — it never reaches your servers or Throttle’s. 3-D Secure challenges are handled for you.
Built for real checkouts
- Ask only for what you need. Turn the shipping and billing address steps on or off per session, and prefill what you already know about the buyer.
- Your rules, your button. Keep the Pay button disabled until your own form is valid — a terms checkbox, a delivery date — with a single prop.
- Card and terms side by side. Approved B2B buyers can choose to pay on invoice terms in the same checkout.
- Promotion codes, address validation, and trial or instalment disclosure are built into the hosted flow.
- Totals that can’t drift. If a total changes after the card was authorized, Throttle voids or refunds the payment instead of charging the wrong amount.
- Events your page can listen to — ready, step changed, completed — so analytics and confirmation screens fire at the right moment.
Embedded only where you allow it
The embed renders only on origins you’ve allowlisted. Non-production environments can use a wildcard for preview deploys; production takes exact origins only.
Guests and returning buyers
Guest checkout is the default. When buyers sign in through customer accounts, their saved cards and addresses come with them.
Good to know
- Payment methods follow the processors you’ve connected — see payment orchestration.
- Secure fields are for cards; PayPal and wallets use the embedded or hosted checkout.