What is Decoupled Authentication?
A standard transaction using 3DSecure can require an authentication challenge from the cardholder while the cardholder is shopping.
Decoupled authentication occurs when the a transaction takes place without the cardholder being in session with the Merchant either via their Website or Mobile Application. The cardholder may in fact not be present at all.
With Decoupled Authentication a merchant can verify the customer’s identity and authenticate the transaction through a different channel, such as a mobile push notification inside their banking app or by email or any other way the Issuer bank elects to reach out to the cardholder to informed then that there an authentication (or a payment consent) request from a merchant.
Merchants can set a time limit for the authentication to take place. This can vary from a few minutes to 7 days.
There are many scenarios where Decoupled Authentication is the best approach. Here are some of them.
A mobile app might opt to do a Decoupled Authentication request rather then render the Issuer Bank’s display elements to provide the Challenge inside the app; this is the approach taken currently taken by the 3DS SDK. Decoupled Authentication is simpler, cheaper and enhances the customer experience.
Merchants conducting Merchant initiated transactions such as card on file payments, recurring or installments may occasionally get a challenge. In these situations, sending a Decoupled Authentication request to the cardholder who is not in session is an elegant way to perform SCA and complete the payment.
Decoupled authentication also has great applications for MOTO (Mail Order Telephony) transactions. It is especially useful to call centers or businesses taking payments over the phone.
In the past this opened up an element of risk for the cardholder and the merchant and approval rates are traditionally low. Now thanks to decoupled authentication, these types of transactions can be both secure and cardholder verified – driving up approval rates.
A business taking a payment over the phone such as for reservation can make use of Decoupled Authentication to get SCA Approval from the Cardholder in real time.
Let's talk payments in Amsterdam!
Endeavour 3DSecure - Authentication done right!
Endeavour 3DSecure and Tokenization, your trusted companion in payments.