SELECTED PRESS RELEASE:
posted on: 6/25/2012 9:25:32 AM EST
Avoid Credit Card Fraud and Charge Backs; e-Commerce Best Practices
Merchant Account

 VISIT WEBSITE (learn more)

This quarter I will be continuing the synopsis of Visa's study and findings last year on the recommended practices for conducting sales over the Internet. In any non face to face sales environment there is a certain amount of fraud risk involved, but e-commerce presents its own set of inherent dangers that are not normally encountered by MO/TO (mail order/telephone order) merchants.

Before actually accepting credit card payments over the Internet, a merchant should ensure that their authorization request process is secure and efficient. This protects the merchant from accepting payment for merchandise and finding out later that the card was used fraudulently or that the cardholder did not have sufficient funds available for the transaction.

Some cost effective authorization processes suggested are using internal screening techniques (i.e. sales from high risk locations, or internal fraud avoidance files), using both AVS (Address Verification Service) and CVV2 (Card Verification Value 2) responses in the Issuer authorization obtained, and using a third party scoring service. The authorizations should be performed REAL-TIME using secure Internet gateway (such as the PayStream gateway  www.paystream.net ) which decreases the risk of fraud as well as lost sales resulting from problems with the transaction (if performed at a later date). The gateway should also employ the use of ECI (Electronic Commerce Indicator) which is required for all e-commerce transactions and helps to eliminate referral responses.

Once the processor approves the transaction, the gateway should send an e-mail response to the cardholder to confirm the sale. This not only provides the buyer with details concerning the transaction, but also enables the merchant to test the validity of the cardholder's e-mail address. Order decline rates should also be tracked, and on a daily basis differentiated between those declined by the card issuer and those declined internally due to suspected fraud. This helps to increase approval rates and discover any problems in the authorization process.

If the merchandise is backordered and has to ship more than 7 days after the initial authorization was obtained, a new authorization should be sought. Visa regulations actually require this practice to reduce chargeback risks. If only part of an order can be shipped, the authorization should be reversed and the new amount posted.

As Internet merchants become more successful, the risk of fraud increases. To reduce this risk, certain risk management practices should be adopted. A formal fraud control group or division can be formed to detect and prevent fraud. This group should work closely with the chargeback group and coordinate its efforts to improve fraud prevention techniques and track fraud control performance. Another good idea is to develop an internal fraud avoidance file to aid in protecting against fraud perpetrated by the same individual more than once. This file should contain all of the key information related to the fraudulent transaction, including the name, address, phone numbers and card account. This file can be used to screen transactions so that further attempts to defraud by the individual will be declined.

The AVS (Address Verification System) protocol that is used by both Visa and MasterCard is another highly useful tool for avoiding fraud. The basic assumption behind AVS is that the majority of the time the person attempting fraud with the use of compromised credit card information will not have access to the legitimate cardholder's billing address (normally the home address). The AVS check is conducted when an AVS request is included in the authorization request from the gateway.

There are three types of responses that can be generated-a full match, a partial match, or a total mismatch. It is recommended that once AVS is implemented as part of the authorization process, a pop up screen should be used to inform the merchant of failures. Because a real-time gateway will be used, the failure response can generate further questions for the customer to answer (such as "Did you move recently?" or "Is this your billing address?") and customers should be allowed to reenter their address up to two additional times in the case of an initial failure. If failures continue after two tries, the customer should be locked out and that particular transaction reviewed and perhaps added to the fraud avoidance file. In fact, even partial matches should be reviewed for possible fraud. In the case of a mismatch or partial match, the merchant can take several other steps to determine the legitimacy of the sale. The prospective customer can be called or e-mailed, the card-issuing bank can be contacted for verification, or directory assistance can be used to determine the billing address of the prospective customer. There are also third party fraud screening services, such as Cybersource, that can be used.

Possible AVS Responses

Y- Yes, or Exact Match on Street Address and Zip Code

A- Street Address matches but Zip Code doesn't

Z- Zip Code matches but Street Address doesn't

U- Address unavailable, or Issuer doesn't support AVS

R- System is unavailable, try back later

N- No, or Total Mismatch

Hints to avoid Fraud

Treat the following as high risk and submit to closer fraud examination:

1. High Risk shipping addresses- such as P.O. Boxes, prisons, hospitals, motels, and areas of the country known for risk.

2. Anonymous E-mail Accounts- e-mail using unknown ISPs as opposed to the larger well know ISPs.

3. Non-U.S. Transactions- these cannot be screened by AVS.

4. High Dollar Purchases

5. New or Unregistered Customers 6. Any AVS or CVV2 partial or total mismatch

What is CVV2?

CVV2 (Card Verification Value 2) is a 3-digit code printed on the back of all newer Visa cards. By referring to this number in all MO/TO or Internet transactions, the cardholder is verifying that they have the physical card in their hand.

Merchants that employ CVV2 in their authorization requests are protected from fraud related chargebacks!

VPAS- The NEW Internet Security Tool

VPAS (Visa Payer Authentication Service) is the latest online security mechanism released by Visa International to combat online credit card fraud. In the physical retail world, merchants are practically guaranteed funds from their credit card transactions, primarily due to customer authentication during the approval process. When the merchant physically swipes the credit card through the magstripe reader on the terminal, the sale will qualify as "Visa CPS Retail" and because it is assumed that the merchant will compare both the signatures and the embossed account numbers, the cardholder is considered "authenticated".

Until now, no such authentication method existed for the Internet merchant. Now however, VPAS will allow merchant to verify the cardholder's identity through the use of passwords and encryptions, and by doing so will have similar payment guarantees as the retail merchant. Both the merchant and the customer have to be enrolled in the program. The cardholder must register the credit card account number and expiration date at an Issuer (i.e. the card issuing bank) VPAS enrollment site, where the Issuer will encrypt the data and issue passwords. The online merchant who wishes to participate must register the computer platforms and server software being used with their acquiring bank. They will then receive software modules to allow their participation.

When a registered cardholder makes a purchase from a VPAS enabled merchant, VPAS contacts the card-issuing bank, which will then identify the account number and authenticate the cardholder.



BUSINESS OWNER COMMENTS:  leave comment
  ** You need to be a member of IBOtoolbox to comment. Click Here to create free account.


PRESS RELEASE LISTING:
  Select a press release to view
1/22/2013  Fundtech launches Global CASHplus on-demand cash management servi
1/22/2013  Royal Jordanian teams up with cashU
1/19/2013  US: online, mobile banking users - 61% more profitable than offli
1/19/2013  Consumers will only adopt m-commerce backed by a compelling value
1/18/2013  UK MPs argue that e-invoicing could boost public sector procureme
1/18/2013  SelectCore adds online bill payment to its offering
1/17/2013  3 criteria for a successful Payment Service Provider business mod
1/17/2013  The rigorous plan a Payment Service Provider needs to attain long
10/20/2012  Basware: 53% of global businesses still rely on paper-based invoi
10/20/2012  NFC mobile payment transaction spend to hit USD 100 bln in 2016 -
10/16/2012  Deckers selects Adyen for online bank transfers, alternative paym
10/16/2012  Andreas Baumhof, ThreatMetrix: "The trick with fraud management s
10/14/2012  Fifth Third Bank, Manilla partner for digital banking services
10/14/2012  uGenius rolls out online video banking interface
10/13/2012  Blackhawk Network, mFoundry to offer gift cards to smartphone use
10/13/2012  Payza online payment system launches in Bangladesh
10/11/2012  Telenor joins Telefónica's BlueVia platform in a bid to expand gl
10/11/2012  Abacus adds PayPal as an online payment option
10/10/2012  Japan: DOCOMO, KT to develop mobile NFC-based cross-border e-mone
10/10/2012  Coupa reaches 500.000 suppliers milestone
10/9/2012  The number of global mobile shoppers to increase by 50% by 2014 -
10/9/2012  Coupa reaches 500.000 suppliers milestone
10/8/2012  Cellum integrates m-payments offering into Apple's iOS6 Passbook
10/8/2012  Allied Wallet inks deal with Sofort, Klarna, giropay
10/6/2012  Turkcell launches mobile wallet service
10/6/2012  Ukash, TrustPay to offer eMoney in Slovakia, Czech Republic
10/5/2012  Turkcell launches mobile wallet service
10/5/2012  Ukash, TrustPay to offer eMoney in Slovakia, Czech Republic
10/4/2012  Kingston NHS Trust selects Proactis for cloud-based eProcurement
10/4/2012  Ingenico receives MasterCard PayPass 3.0 certification
10/2/2012  Hotel and hospitality company selects Direct Insite for e-invoici
10/2/2012  Rouse Properties selects Square for mobile POS services
10/1/2012  Oak Bank selects Fiserv for account processing, digital banking s
10/1/2012  Gemalto acquires Ericsson IPX mobile payments platform
9/28/2012  Seamless, Webhallen partner for SEQR mobile payment service
9/28/2012  MOLPay signs MoU with MAD Incubator
9/26/2012  PayPal, Storific partner for mobile payments app
9/26/2012  Trunkbow to develop new e-payment system for China Minsheng Banki
9/24/2012  Fundtech signs Walter Energy as SWIFT for corporates client
9/24/2012  PayLane introduces new service aimed at start-ups
9/22/2012  German automotive industry supplier Huf selects Basware for AP au
9/22/2012  Communication Federal Credit Union selects Tyfone for mobile bank
9/20/2012  Global manufacturing company selects Direct Insite for e-invoicin
9/20/2012  85.9 million US consumers visited a retail destination via a mobi
9/17/2012  Barclays inks contract with FIS
9/17/2012  Taulia launches new developer API
9/15/2012  Saphety assists Macedonia's public procurement system
9/15/2012  Nigeria: CBN, Zenith Bank, Visafone launch mobile banking service
9/12/2012  Saphety assists Macedonia's public procurement system
9/12/2012  Gartner: Free apps to account for nearly 90% of total mobile app
9/11/2012  Direct Insite's e-invoicing network reaches 175.000 users
9/11/2012  60% of US mobile bankers likely to adopt a mobile wallet in the n
9/10/2012  Kenya: Barclays launches international money transfer service
9/10/2012  FIME provides consultancy for Net1 UEPS Technologies for Net1 UEP
9/8/2012  Invoiceware International enhances SAP ERP Compliance Dashboards
9/8/2012  Diebold acquires GAS Tecnologia to expand across Brazil
9/7/2012  doxo launches mobile QR codes for bill payments
9/7/2012  Romania: Online card-based transactions to hit 5 million in 2012
9/6/2012  UK mobile payments joint venture gets green light from the EU
9/6/2012  Acculynk acquires PayLeap, to form new operating unit
9/5/2012  Skype selects MACH for direct carrier billing service
9/5/2012  Poland: PayPal, Alior Sync team up to provide person-to-person pa
9/4/2012  Bottomline to acquire Albany Software
9/4/2012  Ingenico launches H24 mobile app in Spain
9/3/2012  Coupa adds contracts, accounts payable capabilities Coupa platfor
9/3/2012  ANZ, Bottomline team up for mobile cash management offering
9/2/2012  VeriFone rolls out SAIL Developer Portal for m-payments integrati
9/2/2012  Seamless, Garanti Bank team up for QR code-powered m-payments pil
9/1/2012  JCPenney the latest retailer to invest in a cash-register-free fu
9/1/2012  Park State Bank & Trust to Launch IBT’s Personal Financial Manage
8/31/2012  Apple Dips Toe into Payments with 'Mobile Wallet Lite'
8/31/2012  IBM wants RIM's crown jewel -- its enterprise business, report sa
8/30/2012  MoneyGram in deal with China UnionPay for global emergency cash s
8/30/2012  MCR virtual business center adds MerchantCard MasterCard Prepaid
8/29/2012  Digital River adds more B2B capabilities to Global Commerce enter
8/29/2012  Alibaba, Tencent, Ping An to enter a web-financing venture
8/28/2012  Philippines: younger consumers to use cards for online transactio
8/28/2012  Everything Everywhere, MasterCard partner for mobile, digital pay
8/27/2012  Yes, McDonald’s Is Testing Mobile Payment In France. PayPal? Not
8/27/2012  Walmart Starts Layaway Program Early Amid Paycheck Cycle Concerns
8/24/2012  TNS, Telstra to deliver wireless SIM management for payment devic
8/24/2012  PayPal enters payments alliance with Discover
8/20/2012  Google Shakes Up Mobile-Wallet Model to Win Bank Partnerships
8/20/2012  CRA partners with MasterCard to support California restaurants wi
8/8/2012  American Airlines to offer internet PIN Debit payment option powe
8/8/2012  Starbucks, Square team up for mobile payment services
8/7/2012  Google shipping 1 million NFC-enabled devices per week
8/7/2012  Top 10 Mistakes to Avoid While Attending an Interview
8/3/2012  Hacker Demos Android App That Can Wirelessly Steal And Use Credit
8/3/2012  Costco’s new mobile app bridges online and store shopping
8/2/2012  Apple buys mobile security firm AuthenTec for $356 million
8/2/2012  iPhone 5 and iPad mini are both set to launch in September
8/1/2012  PayPal on pace to process $10B in mobile payments in 2012 Read m
8/1/2012  Social Media and How it Can Help the Merchant
7/31/2012  eBay goes for Olympic gold
7/31/2012  People sharing photos of cards online are not idiots...
7/30/2012  Apple beefs up mobile security with $356M AuthenTec acquisition
7/30/2012  Visa: Mobile payments will hit mainstream in 2 to 3 years
7/29/2012  Laptop vs. Mobile, Credit Card or Payment Service: What Do Consum
7/29/2012  The New Federal Reserve Rule Will Enrich Banks for Not Preventing
7/28/2012  France: Smartphones and tablets play a more important role in onl
7/28/2012  Walmart’s New eCommerce Play Digitizes Back-to-School Shopping
6/25/2012  Avoid Credit Card Fraud and Charge Backs; e-Commerce Best Practic
6/25/2012  Global Trends in eCommerce
6/24/2012  MasterCard Security Alert
6/24/2012  How to Make Money Off Your Adult Web Site
6/23/2012  Pass-through Fees - Factor in Visa and MasterCard's Piece of the
6/23/2012  Chargebacks Explained: Why Merchant Accounts Carry Risk
6/22/2012  Here’s why PCI compliance is mandatory…
6/22/2012  The Role of Contracts in the Credit Card Processing Business
6/21/2012  Merchant Requirements for Securing Cardholder Information
6/21/2012  Interchange Fees
6/20/2012  Terminated Merchant File - TMF aka MATCH List
6/20/2012  E-Commerce Merchant Account Chargeback Requests