Authentication

THE RIGHT approach for eACH transaction

Improve performance, fight fraud, and stay compliant. Reduce friction by intelligently routing payments through 3DS or Google authentication to deliver optimal acceptance rates.

Fight fraud without killing conversions

Intelligently increases revenue

Comprehensive authentication optimizations including 3DS and Google’s authentication technology. All powered by rich, automated machine learning.

Smarter customer experiences

Reduce drop-off with features including device biometrics, like fingerprinting and facial recognition, or advanced Strong Customer Authentication exemptions.

Plug & play or fully custom

Hosted options manage your authentication flow, including data collection and compliance. Non-hosted options let you tailor the experience to your needs.

One-stop authentication

Authenticate on Checkout.com transactions only, or consolidate all your authentication traffic into one place with our acquirer-agnostic standalone solution.

Fewer steps for a faster checkout

Use Google’s biometric authentication to increase conversation at checkout while keeping your business secure.

Keep your customers smiling

  • Make your checkout fasterUse device biometrics, like fingerprinting and facial recognition, to authenticate payments for a smooth, speedy checkout flow.
  • Simplify security CustomersCustomers can breeze through the payment process in as little as three steps, minimizing the risk of cart abandonment.

Boost performance

  • Increase sales intelligently Use device biometrics, like fingerprinting and facial recognition, to authenticate payments for a smooth, speedy checkout flow.
  • Simplify security Customers can breeze through the payment process in as little as three steps, minimizing the risk of cart abandonment.
  • Protect yourself from fraud With transaction liability shifting to the issuer, you’re protected from fraudulent transactions.
boost performance

Keep your customers smiling

  • Align with compliance everywhere Google and 3D Secure are compliant with the latest industry regulation including SCA and PSD2, keeping you compliant in the EEA and the UK, while fighting fraud in other regions.

Make payments faster. Smarter.More adaptive.

Find out how we can help your business go further.

3D Secure payment flows

Feature-rich 3D Secure offering

Deploy the latest 3D Secure version 2.2 for better customer experiences and high performance. Future versions – like 3D Secure 2.3 and beyond – will be implemented automatically, while previous protocols are supported for complete coverage.

Authenticate using your preferred credentials
Our flexible solution supports PAN, Tokens, and Network Tokens, whether you’re using external solutions or the Checkout.com tokenization and network token capability.
Unify user experience across apps
Seamlessly build native mobile experiences across devices and operating systems (Android and iOS) with our Mobile SDK to avoid redirecting your consumers outside of your app.
Always-on, global authentication
Reliably authenticate 24/7, whatever your transaction volume. Our proprietary technology is built in-house so we can deliver the highest levels of availability and redundancy across the globe.
Authentication for your business model
Different business models demand unique authentication solutions. We support many payment flows for authentication, including regular, recurring, installments, card add, and updates.

Keep your customers in the flow

Our flexible 3D Secure authentication works across all acquirers, reducing friction while shifting liability. Stay covered across a broad set of exemptions – from data-sharing-only flows to flagging your customer experience preference to issuers.

  • Rich SCA exemption support removes the need to authenticate.
  • Data-sharing-only flow support guarantees a frictionless experience.
  • Flag your customer experience preference to issuers without impacting liability shifts.

Flow on every platform

Whether you’re accepting payments on web or within a mobile app, Flow offers flexible components to suit your needs.

Standalone

Streamline your global authentication strategy with our acquirer-agnostic solution.

  • One centralized view
  • Consolidated global reporting
  • Customizable non-hosted options
  • Out-of-the-box hosted options
  • API, Android, and iOS SDKs available

As part of the Checkout.com platform

Start authenticating fast on all your transactions processed by Checkout.com. Switch on one API field and you're up and away.

  • Granular data across the payment lifecycle
  • Intuitive reporting
  • Out-of-the box hosted options
  • Hosted Payments Page (HPP), Payment Link-ready

Frequently asked questions

What does the authentication landscape look like?

With the growth of digital payments fraud has become ever more sophisticated, and authentication has had to adapt to keep up. To improve security for both consumers and merchants, the European Payment Service Directive (PSD) has updated its regulatory standards to PSD2.

Part of this is 3D Secure 2.0, an enhanced security protocol that irons out some of the pain points of its predecessor and uses a wider range of data and biometric authentication to facilitate smoother, more secure payments.

3DS2 does this through stricter transaction security measures, including Strong Customer Authentication (SCA), Risk Based Authentication (RBA) and Transaction Risk Analysis (TRA). These improve both safety and the customer experience, helping to cut cart abandonment and increase conversions.

PSD2 SCA is not yet universally mandated, but merchants doing business in the European Economic Area are required to offer two-factor authentication as part of the payment flow in order to meet the regulatory requirements. SCA currently only applies to transactions where both your business’s bank and your customer’s bank are in the EEA or UK.

You can find out more about authentication requirements in our SCA compliance guide.

How does 3D Secure work?

When a customer attempts a payment, 3D Secure 2 (3DS2) helps you and your payment provider assess risk by sending more than 100 data points to the cardholder’s bank to verify their identity.

If the bank trusts that the customer is the cardholder, based on the data provided, the payment can be authenticated immediately. This is known as a frictionless flow.

If the bank needs more proof, it will ask the customer for more information before authenticating the payment. This is known as a challenge flow.

3DS2 lets you embed authentication into your checkout flow, so more of the process can happen behind the scenes. That helps reduce friction and improve the customer experience.

What is a liability shift?

Liability shift happens when responsibility for fraud-related chargebacks moves from the merchant to the card issuer. This protects the merchant from associated costs or risk – for example, when a customer claims they didn’t make a purchase. Liability shift generally happens when a payment is successfully authenticated with 3D Secure.

Some transactions are exempt from Strong Customer Authentication (SCA) or out of scope. Exempt transactions can include payments under €30, low-risk transactions, recurring payments, and subscriptions.

Out-of-scope transactions include:

  • Merchant-initiated transactions (MITs)
  • Mail order telephone order (MOTO) transactionsTransactions where the merchant or issuer is outside the European Economic Area (EEA)
  • Transactions made with anonymous prepaid cards
  • Authorization account verifications used to validate card numbers and expiration dates

In-scope transactions include one-time cardholder-initiated transactions (CITs), adding a credential on file (COF), and provisioning a token.

If you use Checkout.com’s Fraud Detection solution with our Authentication solution, you can choose from five routing options based on the assessed risk level of a transaction.

These options include:

  • Decline – Decline the transaction if it’s too high risk
  • 3DS challenge – Request a challenge through 3DS, with liability shift
  • 3DS frictionless – Request 3DS without a challenge, with liability shift
  • Accept – Request an exemption from 3DS, with no liability shift
Does Checkout.com offer a standalone authentication?

Yes. Checkout.com’s Authentication solution is available as a standalone product or as part of the Checkout.com platform.

With our standalone product, authentication and authorization are handled separately. You can manage authentication across multiple acquirers and choose between a hosted or non-hosted presentation.

With a non-hosted presentation, you have full control of the authentication experience, including device fingerprinting, payment flow, and front-end customization.

Our standalone Authentication product also supports browser-based authentication on web and mobile, as well as native mobile authentication on iOS and Android through our Mobile SDK.

Explore our resources

Get ready for generation Authentication