Xero
Service ID: xero
Get paid sooner when you accept payments online straight from a Xero invoice. Give your customers different payment options, including PayPal and Stripe.
At a Glance
- Difficulty
- ⚡MODERATESelf-Service OAuth + App Partner Certification Required to Scale
- Authentication
- OAuth 2.0OAuth 2.0 (Authorization Code).
- Webhooks
- Native — invoice and bill events (created and updated).
- Partnership Required
- Yes(Required for >25 connections. Xero App Partner Program — certification involves multiple technical checkpoints.)
- Partnership Application
- Xero App Partner Program↗
- Apideck Credentials
- Not available
- Costs
- Free at Starter tier (up to 5 connections). Tiered, usage-based pricing applies at scale — Core, Plus, Advanced (~$895/mo, 10k connections), and Enterprise tiers, effective March 2, 2026 (replacing the previous 15% App Store revenue share). Premium endpoints (Journals, Xero Practice Manager) require the Advanced tier or above. Separate from Apideck pricing.
- Sandbox Availability
- Available — Access Sandbox↗(Free via Xero Developer Portal (demo company included).)
- Account Type Required
- Any active Xero subscription
- Consumer Access Level
- Standard or Adviser level user (Admin recommended for full data access)
- Rate Limits
- 5,000 calls/day per organisation; 60 calls/minute per organisation; 5 concurrent calls/second.
Responsibility matrix
| Task | You (Customer) | Your Consumer | Apideck |
|---|---|---|---|
| Create Xero Developer Account | ✓ | — | — |
| Register Xero App | ✓ | — | Docs provided |
| Add Credentials to Apideck | ✓ | — | — |
| Apply for App Partner Certification | ✓ (if >25 connections) | — | Support available |
| Set Up Custom Domain (Vault) | ✓ (if certifying) | — | Configures on request |
| Register Webhook (Optional) | ✓ | — | Webhook URL provided |
| Authorize Connection (OAuth) | — | ✓ | Handles OAuth flow |
| Build via Unified API | ✓ | — | Maintains connector |
| Token Refresh | — | — | ✓ Automatic |
| Monitor Connections | Via dashboard | Can revoke anytime | Logs and alerts |
Environments
- Sandbox & Production (shared credentials)
- Xero uses the same credential structure for sandbox and production — the connected Xero organisation determines which data is accessed. Testing options: the Xero Demo Company (included with every developer account, sample data) and a 30-day full-featured free trial via xero.com/signup.
- Multi-Organisation
- When a consumer authorises your app, they choose which Xero organisation to connect. Consumers with multiple organisations require a separate connection per organisation.
🚨Important to Know About Xero
- App Partner certification requires onboarding 3 active customer connections within a 30-day period.
- Refresh tokens expire after 60 days if unused — consumer must re-authorise.
- Consumers can install a maximum of 2 uncertified apps — if at the limit they must remove another uncertified app first.
- Certification compliance requires hiding the Apideck callback — a custom Vault domain must be configured before certification.
⚠️
36 gotchas across 20 resources
Connector-specific behaviors and limitations to be aware of
📦
23 supported resources
View field mappings, supported operations, and schema details