The Bombay Stock Exchange (BSE) on January 23, 2026, notified the revised Password Encryption Process for BSE UCC REST API.
The following updated encryption steps shall be required when accessing the UCC REST API:
• First, encrypt the password using MD5.
• Then, encrypt the resulting MD5 hash using SHA512.
• The final SHA512-encrypted password must be passed in the request headers while invoking the API.
All members using the UCC REST API services are advised to begin testing this updated process in the UAT environment at the earliest.
UAT URL: https://uat.bseindia.in/UCC_REST_API_SERVICE/UCCService.svc
It is to be noted that these changes are mandatory and will be moved to the Production environment after successful UAT testing by existing UCC API users at the end of March 2026.
[Notice No. 20260123-41]