Sample code for 30+ languages & platforms
Xbase++

ClickBank Decrypt Instant Notification

See more ClickBank Examples

Demonstrates how to decrypt a ClickBank instant notification. See Instant Notification Service for more information and alternative code snippets.

Chilkat Xbase++ Downloads

Xbase++
LOCAL nSuccess
LOCAL cSecretKey
LOCAL cJsonStr
LOCAL oJson
LOCAL oBdNotif
LOCAL oBdIv
LOCAL oCrypt
LOCAL cHexSha1
LOCAL oBdKey

nSuccess := 0

//  This example assumes the Chilkat API to have been previously unlocked.
//  See Global Unlock Sample for sample code.

//  secret key from your ClickBank account
cSecretKey := "MY_SECRET_KEY"

cJsonStr := '{"notification":"BASE64_NOTIFICATION","iv":"BASE64_IV"}'

oJson := CreateObject("Chilkat.JsonObject")
nSuccess := oJson:Load(cJsonStr)

//  Get the encrypted notification (binary) and IV from the JSON.
oBdNotif := CreateObject("Chilkat.BinData")
oBdIv := CreateObject("Chilkat.BinData")

nSuccess := oBdNotif:AppendEncoded(oJson:StringOf("notification"), "base64")
nSuccess := oBdIv:AppendEncoded(oJson:StringOf("iv"), "base64")

//  Get an SHA1 digest (as a hex string) of the secret key.
//  A SHA1 digest is 20 bytes.  Therefore the hex string is 40 chars.
//  Treat each us-ascii char as a binary byte of the secret key.
//  256-bit AES needs a 256-bit key, which is 32-bytes.  Therefore
//  use the 1st 32 us-ascii chars of the hex SHA1 as the AES secret key.

oCrypt := CreateObject("Chilkat.Crypt2")
//  Because we're using the hex string as the actual AES key, it matters whether the hex is uppercase or lowercase.
//  We want lowercase.
oCrypt:EncodingMode := "hex_lower"
oCrypt:HashAlgorithm := "sha1"
cHexSha1 := oCrypt:HashStringENC(cSecretKey)
? cHexSha1

//  Treat the hex string as binary data for the AES key..
oBdKey := CreateObject("Chilkat.BinData")
oBdKey:AppendString(cHexSha1, "us-ascii")
oBdKey:RemoveChunk(32, 8)

oCrypt:KeyLength := 256
oCrypt:CryptAlgorithm := "aes"
oCrypt:CipherMode := "cbc"

//  We can use any encoding because were just getting the binary bytes in an encoding, and then setting from the same encoding.
//  We'll just use base64..
oCrypt:SetEncodedIV(oBdIv:GetEncoded("base64"), "base64")
oCrypt:SetEncodedKey(oBdKey:GetEncoded("base64"), "base64")

oCrypt:DecryptBd(oBdNotif)
? "Decrypted: " + oBdNotif:GetString("utf-8")

oJson:destroy()
oBdNotif:destroy()
oBdIv:destroy()
oCrypt:destroy()
oBdKey:destroy()