PaymentsJournal
No Result
View All Result
SIGN UP
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
PaymentsJournal
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
No Result
View All Result
PaymentsJournal
No Result
View All Result

Is Skipping SCA Really a Good Idea?

By Tim Sloane
February 25, 2022
in Analysts Coverage, Authentication, Emerging Payments
0
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Is Skipping SCA Really a Good Idea?

Is Skipping SCA Really a Good Idea?

This article suggests that merchants take advantage of every opportunity to avoid implementing two-factor authentication of customers. While clearly there are times when asking the customer to authenticate themselves is less needed, does that mean it should be jettisoned? The only reason two-factor authentication is avoided is because in most implementations it generates friction. But SCA allows a properly secured device to be used as one factor and a behavioral biometric as a second factor. So a consumer with a smartphone in their possession when placing an order could be authenticated without any friction. However, this isn’t supported by any banks that I am aware of so the only way it could happen is if the merchant takes on delegated authorization and does it for the bank. But then I am also unaware of any delegated authorization implementation.

What we are left with is finger pointing both in the EU and the US. Merchants hate the card networks and want to make minimal investment to support them. Banks act as if this is a network and merchant issue, not theirs, even though authenticating their accountholders is critical. So here we are stuck in the middle despite the availability of great authentication solutions from suppliers:

“Of course, there is nothing stopping fraudsters from attacking transactions protected by 3D Secure alone — and they do. The security protocol does shift liability from the merchant to its bank, but if a bank is hit by fraud often enough, it will protect itself by declining more orders.

That’s SCA in simple terms but the wonder of the regulation lies in the detail. And on closer inspection of what SCA stipulates, it is clear that a robust fraud protection solution will be the bedrock of a merchant’s successful SCA strategy because:

1. Low fraud rates are required for key exemptions that allow consumers and merchants to bypass SCA.

2. SCA does not cover every transaction a merchant will process — far from it.

3. SCA deals head-on with payment fraud. It does not protect a merchant from friendly fraud or policy abuse by consumers.

4. Fraudsters are innovative and entrepreneurial. SCA may prove a barrier initially, but professional fraud rings will find an alternate path of attack.

Let’s start with exemptions, as they are the key to providing a seamless SCA experience for online customers. Exemptions allow orders to be approved without undergoing SCA based on the notion that the transaction isn’t very risky or wouldn’t be very costly if things go wrong.

Skipping SCA is a highly desirable outcome as stricter authentication measures have the potential to disrupt the customer’s online checkout experience. Featured in the latest CMSPI report into the impact of SCA in Europe, testing shows 29% percent of SCA transactions are abandoned. This could be because they are declined, because of technical errors or because the customers simply got too frustrated with the added security layers. All of this could amount to an annual loss for merchants of €90 billion combined.”

Overview by Tim Sloane, VP, Payments Innovation at Mercator Advisory Group

0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Tags: AuthenticationBiometric AuthenticationFraudFraud PreventionMerchantMerchantsSCATwo-Factor Authentication

    Get the Latest News and Insights Delivered Daily

    Subscribe to the PaymentsJournal Newsletter for exclusive insight and data from Javelin Strategy & Research analysts and industry professionals.

    Must Reads

    samsung p2p

    Making Zelle Work Better for Users—and Banks

    April 10, 2026
    fraud escalate

    As Fraud Escalates, Taking a Beat Becomes a Critical Defense

    April 9, 2026
    privacy open banking

    As Open Banking Fuels Interconnectivity, Privacy Matters More

    April 8, 2026

    ACH Is Thriving, and Banks Are Struggling to Keep Pace

    April 7, 2026
    stablecoins, Klarna

    How Stablecoins Emerged as a Key Element of Cross-Border Payments

    April 6, 2026
    Cross-Border Payments

    How the U.S. Built Its Faster Payments Ecosystem

    April 3, 2026
    Young Latin woman applying powder on her face for beauty blog. Smiling woman sitting at table in cosy room holding powder box and brush looking at phone camera recording video. Make up and cosmetics blogging concept

    TikTok Aspires to Fintech Status with Payments, Credit Bids in Brazil

    April 2, 2026
    small business credit card

    What Banks Get Wrong About Small Business Credit Cards

    April 1, 2026

    Linkedin-in X-twitter
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter

    ©2026 PaymentsJournal.com |  Terms of Use | Privacy Policy

    • Commercial Payments
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    No Result
    View All Result