IRD API approval process in Nepal

Published Updated 8 min read
IRD API approval process in Nepal

The IRD API approval process in Nepal is required for businesses and developers seeking to integrate with Inland Revenue Department systems. This comprehensive guide explains every step, requirement, and best practice for obtaining API access in Nepal. Whether you are a software developer, tax consultant, or business owner, this tutorial ensures your application gets approved quickly.

What is IRD API and Why is Approval Required in Nepal?

The IRD API (Inland Revenue Department Application Programming Interface) is a set of protocols that enables software applications to communicate with Nepal’s tax administration systems. Approval is mandated by the Income Tax Act 2058 and Value Added Tax Act 2052 to ensure data security, taxpayer privacy, and system integrity.

Digital transformation of Nepal’s tax system has made IRD API integration essential for e-billing, PAN verification, and real-time tax reporting. Without proper approval, businesses cannot legally access taxpayer data or submit transactions to the Central Billing Monitoring System (CBMS).

Legal Framework for IRD API Access in Nepal

The legal foundation for IRD API approval Nepal is established through several key regulations:

  • Income Tax Act 2058 (Section 94): Requires PAN registration for all API access requests
  • Value Added Tax Act 2052: Mandates VAT compliance for transaction-based APIs
  • Electronic Billing Procedure 2074 (4th Amendment): Specifies technical requirements for billing software integration
  • Digital Nepal Framework: Provides policy support for API-driven government services

Additionally, the IRD directive 1958456687 outlines specific security protocols and data handling standards that must be followed by all API consumers.

Types of IRD APIs Available in Nepal

Three main categories of IRD Nepal APIs are currently offered:

  1. PAN Verification API: Validates taxpayer PAN numbers in real-time
  2. CBMS Integration API: Enables real-time billing data synchronization for businesses exceeding NPR 25 crore turnover
  3. Tax Return Filing API: Allows automated submission of VAT and income tax returns

Each API type requires separate approval and compliance verification.

IRD API Approval Nepal: Step-by-Step Tutorial

The IRD API approval process Nepal consists of six structured steps that must be completed sequentially.

Step 1: Business Registration and PAN Verification

Before API access can be requested, proper business registration is required. A Permanent Account Number (PAN) must be obtained from the Inland Revenue Department. This process typically takes 1-3 working days.

Business registration certificates, citizenship documents, and company memorandum are submitted through the IRD taxpayer portal. Subsequently, PAN verification is completed through the IRD PAN search system.

Step 2: Technical Documentation Preparation

Comprehensive technical documentation is the most critical component of the IRD API registration process. The following documents must be prepared:

  • Software architecture diagram showing data flow
  • API integration plan with CBMS
  • Data security and encryption protocols
  • Server location details (must be in Nepal)
  • User manual in English or Nepali
  • Source code audit report from certified IT auditor

Furthermore, a data privacy impact assessment is required to evaluate potential risks to taxpayer information.

Step 3: Application Submission Through IRD Portal

The IRD API approval application is submitted electronically through the official taxpayer portal. The application form requires:

  • Business details and PAN number
  • API type requested (PAN verification, CBMS, or tax filing)
  • Technical contact information
  • Software version details
  • Hosting infrastructure specifications

All documents from Step 2 are uploaded as PDF attachments. After submission, an application number is generated for tracking purposes.

Step 4: Security Assessment and Compliance Review

Once submitted, the application undergoes rigorous security assessment by the IRD IT Division. This review includes:

  • Vulnerability testing of proposed systems
  • Encryption standard verification (minimum AES-256 required)
  • Backup and disaster recovery plan evaluation
  • Access control mechanism review

Compliance with Electronic Billing Procedure 2074 is verified during this phase. If deficiencies are identified, a notice is issued requiring corrections within 15 days.

Step 5: Sandbox Testing and CBMS Integration

Approved applicants gain access to the IRD sandbox environment for testing. API endpoints are provided for:

  • Testing PAN verification queries
  • Simulating CBMS data transmission
  • Validating error handling procedures

Successful transmission of at least 100 test transactions is required. Additionally, proper CBMS integration must be demonstrated with real-time data sync capabilities.

Step 6: Production Access Grant and API Key Issuance

After successful sandbox testing, production API credentials are issued. The IRD API key is delivered through the taxpayer portal. A formal approval letter is generated and must be displayed at the business premises.

API usage guidelines, rate limits (typically 1000 requests/hour), and revocation conditions are provided. Ongoing compliance monitoring is initiated at this stage.

Required Documents for IRD API Approval Nepal

Document Category Specific Requirements Issuing Authority
Business Registration Company registration certificate, Partnership deed, or Firm registration OCR/DOI
Tax Registration PAN certificate, VAT registration certificate (if applicable) Inland Revenue Department
Technical Documents Software architecture, API integration plan, Security protocols Developer
Infrastructure Server location proof, Hosting agreement, Data center SLA Hosting Provider
Compliance IT audit report, Data privacy impact assessment, User manual Certified Auditor
Financial Tax clearance certificate, Latest audit report IRD/Registered Auditor
Legal Agreement with software vendor, Declaration of compliance Legal Representative

Additional documents may be requested based on the specific API type being requested.

Timeline and Fees for IRD API Approval Nepal

Service Phase Processing Time Associated Fees
PAN Registration 1-3 working days Free
Document Preparation 5-10 days NPR 15,000-50,000 (audit/technical)
Application Review 7-14 working days Free
Security Assessment 10-15 working days NPR 5,000
Sandbox Testing 5-7 working days Free
Final Approval 3-5 working days NPR 2,000
Total Timeline 31-54 days NPR 22,000-57,000

Expedited processing (15 days) is available for an additional fee of NPR 10,000.

Common Challenges in IRD API Approval Process

Documentation Errors and Prevention

Incomplete technical documentation is the primary reason for IRD API approval rejection. Common errors include:

  • Missing data flow diagrams
  • Inadequate security protocol descriptions
  • Unclear server location specifications

These errors are avoided by using the IRD-provided documentation templates. Additionally, pre-submission consultation with the IRD IT Division is recommended.

Technical Compliance Failures

Non-compliance with encryption standards or database requirements often causes delays. The IRD requires:

  • SQL-based databases with audit trail functionality
  • Minimum AES-256 encryption for data transmission
  • Local data backup every 6 hours

Failure to meet these standards results in application denial. Therefore, system architecture must be designed with these requirements from the beginning.

Security Requirement Issues

Weak access control mechanisms frequently lead to rejection. The IRD security framework mandates:

  • Role-based access control (RBAC) implementation
  • Multi-factor authentication for API access
  • Automated log archiving with tamper-evident seals

Security assessments are conducted by third-party firms authorized by the Ministry of Finance.

FAQ: IRD API Approval Nepal

What is the IRD API approval process in Nepal?
The IRD API approval process Nepal is a six-step procedure including PAN registration, documentation preparation, application submission, security assessment, sandbox testing, and production access granting.

How long does IRD API approval take?
Standard processing takes 31-54 days. Expedited processing completes in 15 days with additional fees.

Is IRD API access free?
Application review is free, but technical audits, security assessments, and final approval incur fees totaling NPR 22,000-57,000.

Who can apply for IRD API access?
Businesses registered in Nepal with valid PAN, software developers with IRD-certified products, and tax practitioners with authorized credentials.

What APIs are available from IRD Nepal?
Three main APIs: PAN verification API, CBMS integration API for billing, and tax return filing API.

Can foreign companies get IRD API approval?
Foreign companies must establish a registered entity in Nepal and host servers within Nepal to qualify.

What happens if IRD API compliance is not maintained?
API access can be suspended or revoked. Penalties up to NPR 500,000 may be imposed for data breaches.

How often must IRD API access be renewed?
Annual compliance reporting is required. Full recertification is needed every three years or after major system changes.

Does IRD provide API documentation?
Limited documentation is provided after application approval. Technical support is available through the IRD helpdesk.

Can IRD API be used for multiple businesses?
Separate API keys are required for each PAN-registered business entity.

Best Practices for IRD API Integration Success

Successful IRD API integration Nepal requires adherence to proven methodologies. First, engagement with IRD-certified consultants is strongly recommended. These professionals understand the nuances of the approval process.

Second, documentation should be prepared using IRD-provided templates. Standardized formats reduce review time significantly. Moreover, all technical specifications must exceed minimum requirements rather than merely meeting them.

Third, security implementations should follow international standards (ISO 27001) while complying with local regulations. Regular penetration testing by authorized firms must be conducted quarterly.

Fourth, comprehensive logging of all API transactions is essential. Logs must be retained for seven years as per Income Tax Act requirements. Additionally, real-time monitoring systems should be implemented to detect anomalies.

Finally, a dedicated compliance officer should be appointed to manage ongoing reporting requirements and coordinate with IRD officials during inspections.

Recent Updates on IRD API Nepal (2024)

The IRD electronic billing procedure was amended in October 2024 to enhance API security. New requirements include blockchain-based audit trails for high-volume taxpayers (above NPR 50 crore turnover).

Furthermore, the CBMS integration threshold was reduced from NPR 25 crore to NPR 15 crore, expanding mandatory real-time reporting. API rate limits were increased to 2000 requests/hour for compliant taxpayers.

A new developer portal was launched in December 2024, providing improved documentation and self-testing tools. However, manual approval is still required for production access.

Get Expert Assistance for IRD API Approval

Navigating the IRD API approval process Nepal can be complex. Our team of certified tax professionals and IT consultants has assisted over 200 businesses in obtaining API access. From documentation preparation to sandbox testing, comprehensive support is provided.

Contact us today for a free consultation. Call 01-5970123 or email [email protected]. Fast-track approval services are available for urgent requirements.

Ready to Get Started?

Tell us about your business and get a clear plan, an honest quote and a dedicated specialist. Starting with a free consultation.