Information only Authentication (IOA) uses 3DSecure Messages which are sent to the Issuer for Information only; this means that there is no challenge and no Authentication Value is created.
With Information Only Authentication, there is no liability shift, the chargeback risk remains with the merchant.
While there is no Authentication Value generated, the IOA is still linked to the Authorization via the dstransid which is returned by the Directory and is unique the authentication.
Information Only Authentications are still treated as regular 3DSecure Authentications messages by the card schemes and used to perform Transaction Risk Analysis (TRA) on the transaction which is sent to the Issuer.
The Issuer will therefore have both the information and the Card Scheme recommendation available in their evaluation of the Authorization Request.
Information Only Authentication therefore still provides the merchant with the possibility of influencing the outcome of the transaction.
Information Only Authentication was previously called MC Identity Check Insights by MasterCard.
Information Only Authentication plays a role for scenarios where the cardholder is not available for authentication. IOA are a type of Merchant-Initiated Transactions (MIT).
Endeavour has created the ultimate guide to Merchant-Initiated Transactions covering every possible aspect of MIT. All the test scenarios are also supported in our Sandbox environment.
Let's talk payments in Amsterdam!
Endeavour 3DSecure - Authentication done right!
Endeavour 3DSecure and Tokenization, your trusted companion in payments.