> ## Documentation Index
> Fetch the complete documentation index at: https://docs.pointzero.io/llms.txt
> Use this file to discover all available pages before exploring further.

# Unfreeze a card

> Returns a frozen card to `active`.



## OpenAPI

````yaml /api-reference/openapi.json post /cards/{card_id}/unfreeze
openapi: 3.0.3
info:
  title: PointZero Card Issuing API
  version: 2026-10
  description: >-
    Issue and manage virtual and physical payment cards.


    All amounts are integers in the smallest currency unit. Requests and
    responses are JSON. Authenticate with a secret API key in the
    `Authorization: Bearer` header; keys starting with `sk_test_` work only in
    the sandbox.


    List endpoints use cursor pagination with `limit` and `starting_after`.
    `POST` requests that create resources accept an `Idempotency-Key` header.
  contact:
    name: PointZero
    email: support@pointzero.io
    url: https://pointzero.io
servers:
  - url: https://api.pointzero.io/v1
    description: Production
  - url: https://sandbox.api.pointzero.io/v1
    description: Sandbox
security:
  - bearerAuth: []
tags:
  - name: Programs
    description: Card programs configured for your account.
  - name: Customers
    description: Individuals and businesses that hold cards.
  - name: Cards
    description: Issue and manage the card lifecycle.
  - name: Authorization Controls
    description: Merchant, country and channel rules.
  - name: 3D Secure
    description: 3DS settings for online payments.
  - name: Wallets
    description: Apple Pay and Google Pay tokens.
  - name: Physical Cards
    description: Production and delivery of plastic cards.
  - name: PIN
    description: PIN management for physical cards.
  - name: Transactions
    description: Authorizations, refunds and settlements.
  - name: Disputes
    description: Chargebacks on card transactions.
paths:
  /cards/{card_id}/unfreeze:
    post:
      tags:
        - Cards
      summary: Unfreeze a card
      description: Returns a frozen card to `active`.
      operationId: unfreezeCard
      parameters:
        - $ref: '#/components/parameters/CardId'
      responses:
        '200':
          description: OK.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/Card'
        '400':
          $ref: '#/components/responses/BadRequest'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '409':
          $ref: '#/components/responses/Conflict'
        '429':
          $ref: '#/components/responses/TooManyRequests'
components:
  parameters:
    CardId:
      name: card_id
      in: path
      required: true
      schema:
        type: string
      example: card_01JZ8N2K4M
  schemas:
    Card:
      type: object
      description: >-
        A virtual or physical payment card. Full card number and CVC are never
        returned by this API.
      required:
        - id
        - object
        - customer_id
        - program_id
        - type
        - status
        - currency
        - created_at
      properties:
        id:
          type: string
          description: Unique identifier, prefixed with `card_`.
          example: card_01JZ8N2K4M
          readOnly: true
        object:
          type: string
          enum:
            - card
          description: Object type.
          readOnly: true
        customer_id:
          type: string
          example: cus_01JZ8M4X7K
        program_id:
          type: string
          example: prog_01JZ8A2K4M
        type:
          type: string
          enum:
            - virtual
            - physical
        status:
          type: string
          enum:
            - pending
            - active
            - frozen
            - terminated
          description: '`pending` until the card is ready for use. `terminated` is final.'
        currency:
          type: string
          pattern: ^[A-Z]{3}$
          description: Three-letter ISO 4217 currency code.
          example: EUR
        cardholder:
          type: object
          properties:
            name:
              type: string
              maxLength: 26
              description: Name as printed on the card.
              example: ALEX MORGAN
        brand:
          type: string
          enum:
            - visa
            - mastercard
          readOnly: true
        last4:
          type: string
          pattern: ^[0-9]{4}$
          readOnly: true
          example: '4821'
        expiry:
          type: object
          readOnly: true
          properties:
            month:
              type: integer
              minimum: 1
              maximum: 12
              example: 11
            year:
              type: integer
              example: 2029
        spending_controls:
          $ref: '#/components/schemas/SpendingControls'
        replaced_card_id:
          type: string
          nullable: true
          description: ID of the card this card replaced, if any.
          readOnly: true
        metadata:
          type: object
          description: >-
            Up to 50 key-value pairs for your own reference. Values are strings
            up to 500 characters.
          additionalProperties:
            type: string
            maxLength: 500
          example:
            cost_center: marketing
        created_at:
          type: string
          format: date-time
          description: Time the card was created.
          readOnly: true
        updated_at:
          type: string
          format: date-time
          description: Time the card was last updated.
          readOnly: true
    SpendingControls:
      type: object
      description: Card-level spending limits. Omitted or `null` limits are not enforced.
      properties:
        single_transaction_limit:
          type: integer
          format: int64
          minimum: 0
          description: >-
            Maximum amount of a single authorization. In the smallest currency
            unit (e.g. cents).
          nullable: true
          example: 100000
        daily_limit:
          type: integer
          format: int64
          minimum: 0
          description: >-
            Maximum total authorized per calendar day (UTC). In the smallest
            currency unit (e.g. cents).
          nullable: true
          example: 500000
        monthly_limit:
          type: integer
          format: int64
          minimum: 0
          description: >-
            Maximum total authorized per calendar month (UTC). In the smallest
            currency unit (e.g. cents).
          nullable: true
          example: 2500000
    Error:
      type: object
      required:
        - error
      properties:
        error:
          type: object
          required:
            - type
            - message
            - request_id
          properties:
            type:
              type: string
              enum:
                - invalid_request
                - authentication_error
                - permission_error
                - not_found
                - conflict
                - rate_limit
                - api_error
            code:
              type: string
              example: card_not_active
            message:
              type: string
              example: The card must be active to perform this action.
            param:
              type: string
              nullable: true
              example: card_id
            request_id:
              type: string
              example: req_01JZ8R2Q4V
  responses:
    BadRequest:
      description: The request is malformed or missing required parameters.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/Error'
    Unauthorized:
      description: The API key is missing or invalid.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/Error'
    Forbidden:
      description: The API key does not have access to this resource.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/Error'
    NotFound:
      description: The resource does not exist.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/Error'
    Conflict:
      description: The request conflicts with the current state of the resource.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/Error'
    TooManyRequests:
      description: Too many requests. Retry after the time given in `Retry-After`.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/Error'
      headers:
        Retry-After:
          schema:
            type: integer
          description: Seconds to wait before retrying.
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      description: Secret API key, e.g. `sk_live_...` or `sk_test_...`.

````

This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.