THEBUSINESSBYTES
BUREAU
NEW
DELHI, SEPTEMBER 7, 2026
The Directorate
General of Foreign Trade (DGFT) has introduced an Open Application Programming
Interface (API) facility for the issuance and verification of Certificates of
Origin (CoO) through the Trade Connect e-Platform, a move aimed at simplifying
export documentation and accelerating the certification process.
The new facility will
allow eligible exporters to directly integrate their Enterprise Resource
Planning (ERP), accounting and other business software with the DGFT's CoO
system, eliminating the need to repeatedly enter information that is already
available in their internal systems.
Under the new
arrangement, application data can be electronically transferred from an
exporter's business software to the DGFT platform, reducing repetitive data
entry, minimising errors and expediting the processing of CoO applications.
The facility covers
both Preferential and Non-Preferential Certificates of Origin. Preferential
CoOs are issued under Free Trade Agreements (FTAs), Regional Trade Agreements
(RTAs) and Preferential Trade Agreements (PTAs), allowing exporters to claim
applicable tariff concessions in importing countries.
Non-Preferential
CoOs, on the other hand, are used for customs clearance, compliance, trade
remedy and other commercial purposes and do not provide tariff benefits.
To access the
facility, exporters can obtain API credentials through the API Management
section of the CoO Portal and register the IP addresses from which their
systems will connect. The DGFT has made available three APIs — the
Authentication Token API for secure login, the CoO File API for submission of
applications and receipt of certificates, and the Certificate Verification API
for verifying issued certificates.
The system also
maintains a transaction ledger for every application, providing exporters with
electronic visibility of the application status, including Draft, In Process,
Approved, Certificate Issued and Rejected. The ledger also records details such
as acknowledgement ID, file number, file date and certificate number, enabling
exporters to track applications more efficiently.
The API framework incorporates
multiple security measures to ensure safe and reliable exchange of information.
All requests and responses are digitally signed using SHA-256 RSA digital
signatures with 2048-bit X.509 certificates, providing data integrity, sender
authentication and non-repudiation.
Passwords are secured
through PBKDF2 hashing with a dynamic salt, while access is restricted to IP
addresses whitelisted by exporters. Each access token remains valid for 60
minutes.
The framework covers
a wide range of trade agreements and certification schemes, including the
India-Japan CEPA, India-Korea CEPA, SAFTA, SAPTA, ASEAN-India FTA,
India-Singapore CECA, India-Malaysia CECA, India-Chile PTA, India-Mercosur PTA,
India-UAE CEPA, India-Australia ECTA, India-Oman CEPA, India-EFTA TEPA,
India-UK CETA, the Generalized System of Preferences and the Non-Preferential
CoO Scheme.
The system
automatically applies the relevant fields, rules of origin and validation
requirements based on the agreement or certification scheme selected by the
exporter, further streamlining the certification process.
The registration, authentication and technical integration procedures are available on the Trade Connect e-Platform.
Exporters, Export Promotion Councils, designated CoO issuing agencies and trade bodies can contact the DGFT Helpdesk through its toll-free numbers or email for queries, suggestions and feedback relating to the electronic Certificate of Origin (eCoO) module.