Sample code for 30+ languages & platforms
Zig

ZATCA Onboarding Get Compliance CSID

See more ZATCA Examples

Demonstrates sending a POST to get a compliance CSID, which is two parts: A binary security token, and a secret.

Chilkat Zig Downloads

Zig
const std = @import("std");
const chilkat = @import("chilkat");

pub fn main(init: std.process.Init) !void {
    const alloc = init.arena.allocator();

    // This example requires the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    // It is assumed you've already generated a CSR.
    // Also, you'll need an OTP code, valid for 1 hour, which is generated online in the Fatoora portal.  See
    // https://zatca.gov.sa/ar/E-Invoicing/Introduction/Guidelines/Documents/E-invoicing%20Detailed%20Technical%20Guidelines.pdf

    // Manually replace this with the OTP code you interactively obtained in a browser session from the Fatoora portal.
    // The OTP code is valid for 1 hour.
    const otp = "123434";

    // You should already have a CSR in a file containing something that looks like this:

    // -----BEGIN CERTIFICATE REQUEST-----
    // MIIB5DCCAYsCAQAwTDELMAkGA1UEBhMCU0ExFTATBgNVBAsMDFJpeWFkIEJyYW5j
    // aDEQMA4GA1UECgwHQ29udG9zbzEUMBIGA1UEAwwLRUExMjM0NTY3ODkwVjAQBgcq
    // hkjOPQIBBgUrgQQACgNCAAQI6op+6GQ4Gmn9oy0DpGxX0lFtUIvj+4Jtnp0VyEsH
    // +ZO7lpgksbRC484R3fAsO0v+Ly24ZIUIOYEIAeJ1f6AooIHfMIHcBgkqhkiG9w0B
    // CQ4xgc4wgcswIQYJKwYBBAGCNxQCBBQTElpBVENBLUNvZGUtU2lnbmluZzCBpQYD
    // VR0RBIGdMIGapIGXMIGUMTswOQYDVQQEDDIxLVRTVHwyLVRTVHwzLWVkMjJmMWQ4
    // LWU2YTItMTExOC05YjU4LWQ5YThmMTFlNDQ1ZjEfMB0GCgmSJomT8ixkAQEMDzMx
    // MDEyMjM5MzUwMDAwMzENMAsGA1UEDAwEMTEwMDESMBAGA1UEGgwJTXlBZGRyZXNz
    // MREwDwYDVQQPDAhJbmR1c3RyeTAKBggqhkjOPQQDAgNHADBEAiBurm6KdAeHfXzt
    // h/jk8xSMBP4TAkkFrg+hWDhfI0/SuAIgJi8ectM7YwBIBCmf0tdFcVTU7GBbvjnK
    // xValZCAO39M=
    // -----END CERTIFICATE REQUEST-----

    const pem = try chilkat.Pem.init();
    defer pem.deinit();
    pem.loadPemFile("c:/aaworkarea/zatca/onboarding/taxpayer.csr", "") catch {
        std.debug.print("{s}\n", .{try pem.getLastErrorText(alloc)});
        return;
    };

    // Get the base64 from the CSR in a single line.
    const sb_csr_base64 = try chilkat.StringBuilder.init();
    defer sb_csr_base64.deinit();
    sb_csr_base64.append(try pem.getEncodedItem(alloc, "csr", "", "base64", 0)) catch {};
    var num_replaced: i32 = sb_csr_base64.replace("\r", "");
    num_replaced = sb_csr_base64.replace("\n", "");
    const csr_base64 = try sb_csr_base64.getAsString(alloc);
    std.debug.print("{s}\n", .{csr_base64});

    const json = try chilkat.JsonObject.init();
    defer json.deinit();
    json.setEmitCompact(false);
    json.updateSb("csr", sb_csr_base64) catch {};

    const http = try chilkat.Http.init();
    defer http.deinit();
    http.setAccept("application/json");
    http.setRequestHeader("OTP", otp);
    http.setRequestHeader("Accept-Version", "V2");
    const resp = try chilkat.HttpResponse.init();
    defer resp.deinit();
    http.httpJson("POST", "https://gw-apic-gov.gazt.gov.sa/e-invoicing/core/compliance", json, "application/json", resp) catch {
        std.debug.print("{s}\n", .{try http.getLastErrorText(alloc)});
        return;
    };

    if (resp.getStatusCode() != 200) {
        std.debug.print("{s}\n", .{try resp.getBodyStr(alloc)});
        std.debug.print("response status code = {d}\n", .{resp.getStatusCode()});
        std.debug.print("Failed\n", .{});
        return;
    }

    const json_resp = try chilkat.JsonObject.init();
    defer json_resp.deinit();
    resp.getBodyJson(json_resp) catch {};

    json_resp.setEmitCompact(false);
    std.debug.print("JSON response:\n", .{});
    std.debug.print("{s}\n", .{try json_resp.emit(alloc)});
}