Shop without 3d security ?

Status
Not open for further replies.
If i'm not mistaken, OTP is a requirement within the EU only and even here the grace period still lasts for a while, until sites don't have to use it. So many sites still don't use it and yes, it depends on the payment processor too.
 
if you are in india then i think for every payment gateway you have to use 3d secure password .
Not quite true. Just tried digital ocean with a sbi simply click cc. Worked without otp, or 3d secure. It rather depends on the gateway.
 
If i'm not mistaken, OTP is a requirement within the EU only and even here the grace period still lasts for a while, until sites don't have to use it. So many sites still don't use it and yes, it depends on the payment processor too.

Incorrect. All the banks on the market (regardless of GEO location) have a security method if you have online payments activated on your CC/DB.
The most common are:
  • OTP (via SMS or email)
  • Phone call from the bank to confirm and approve the transaction
  • SMS approval of merchant/payment with 'yes' or 'no' answer

These do not depend on the location of your bank. Only what options your bank provides and which ones you opt for as a client. They also change according to sums. For example, some clients only require OTP confirmations for payments over $100. Amounts over $1000 sometimes require vocal approval with the bank, they will call you. But once again, these can be customized and negotiated with the bank and they depend on that alone.

On-topic: My banking system doesn't even allow processing of transactions without the 3D secure system. Not sure why you would want a payment processor without it.. you'll have a lot of rejected transactions from most banks instantly.
 
Incorrect. All the banks on the market (regardless of GEO location) have a security method if you have online payments activated on your CC/DB.
The most common are:
OTP (via SMS or email)
Phone call from the bank to confirm and approve the transaction
SMS approval of merchant/payment with 'yes' or 'no' answer

These do not depend on the location of your bank. Only what options your bank provides and which ones you opt for as a client. They also change according to sums. For example, some clients only require OTP confirmations for payments over $100. Amounts over $1000 sometimes require vocal approval with the bank, they will call you. But once again, these can be customized and negotiated with the bank and they depend on that alone.
How do you figure? There ain't no such global banking rule regarding verification, it's more like the exception (of whatever country you reside in) and not the rule.

We didn't have any legislation in EU regarding OTP or any other verification type for online credit card purchases up until a few months ago. There wasn't any kind of verification with online credit card purchases since you could shop online with credit cards, so for around 25 years now, banks didn't have this kind of verification requirement at all, countries neither. A legislation has been passed regarding this in the EU, it's already in effect since Sept 2019, but there's a grace period for implementation.
I shop regularly online and maybe only half of the gateways use OTP (SMS verification) since the effective date, the other half still isn't and this is for domestic purchases. I can't recall using OTP for international purchases, not even once. I can still easily shop online just by providing the usual: credit card number, name on the card (sometimes not needed), expiry date (not always needed either) and CVC, no SMS or any other kind of verification is required, let alone a phone call (this latter sounds a lot like Latin America to me). I can't really tell, what's the case in other countries, but as Gogol mentioned it too above, OTP/3D secure wasn't a requirement for the Digitalocean purchase he just made and he is from India (i think), it was an international purchase.

To the contrary what you state, the verification requirement primarily depends on the geolocation of the bank, banks aren't above the law. Banks can have their own rules of course on top of the independent legislation of countries or on top of the generally applicable legislation of a monetary union such as the EU, but until verification is not a requirement (which was the case for decades in Europe), it's up to the banks. And until something like this is not a requirement, only an option, usually it's not too frequently used.
 
Last edited:
How do you figure? There ain't no such global banking rule regarding verification, it's more like the exception (of whatever country you reside in) and not the rule.

We didn't have any legislation regarding OTP in the EU (27 countries) up until a few months ago. There wasn't any kind of verification with online credit card purchases since you could shop online with credit cards, so for around 25 years now, banks didn't have this kind of verification requirement at all, countries neither. A legislation has been passed regarding this in the EU, it's already in effect since Sept 2019, but there's a grace period for implementation.
I shop regularly online and maybe only half of the gateways use OTP (SMS verification) since the effective date, the other half still isn't and this is for domestic purchases. I can't recall using OTP for international purchases, not even once. I can still easily shop online just by providing the usual: credit card number, name on the card (sometimes not needed), expiry date (not always needed either) and CVC, no SMS or any other kind of verification is required, let alone a phone call (this latter sounds a lot like Latin America to me). I can't really tell, what's the case in other countries, but as Gogol mentioned it too above, OTP/3D secure wasn't a requirement for the Digitalocean purchase he just made and he is from India (i think), it was an international purchase.

To the contrary what you state, the verification requirement primarily depends on the geolocation of the bank, banks aren't above the law. Banks can have their own rules of course on top of the independent legislation of countries or on top of the generally applicable legislation of a monetary union such as the EU, but until verification is not a requirement (which was the case for decades in Europe), it's up to the banks. And until something is not a requirement, only an option, usually it's not too frequently used.

I regularly shop online as well, both internationally and domestically and 8/10 times I am asked for OTP (this is not recent). I used to work for a forex brokerage house and had deals with multiple payment processors. Plus I have dealt with clients from UK, ES, PA, AU, NZ, SA, UAE, QA and a few more countries on a weekly basis. And I can tell you that in most cases since we're talking about average ~$500 deposits, OTP was required. That's how I figure. But I never said there's a global banking rule regarding verification, it depends on the involved parties. Especially the relationship between the payment processor and the bank. Banks also have blacklists on certain vendors or block transactions based on keywords (believe it or not). For example if you're with Barclays and you're a british citizen, most transactions that involve crypto purchase will be rejected initially and you will receive a notification to call your bank, in which case the numbskulls there start "educating" you on purchases online regarding crypto and try to convince you not to spend your money on Bitcoin. This is one of many examples.

But if you're trying to purchase something through a well established P.processor used by Amazon for example, your bank might have it whitelisted. There are so many variables involved, it's difficult to talk legislation.
But you would be surprised of how many UK citizens I've dealt with that had payments rejected even after 3D secure or had to receive phone calls from their banks. Also, look up how they deal with this stuff in Nordic countries. Banks there are terrible, they require verifications over verifications in some cases.. it's crazy.
 
i heard a person having psp saying how he wants 3d security payment or not .
 
What's the problem with 3DS? Every store owner should force 3DS, in my opinion. It takes 10-15 seconds for the customer and helps to prevent quite a lot fraud cases.
 
Status
Not open for further replies.
Back
Top