EMVCo Launches EMV 3-D Secure 2.0 Specification
By FF Newsroom · 22 February 2016

New specification to authenticate cardholders during card-not-present transactions across all e-commerce channels and connected devices promotes consumer familiarity, convenience and security
EMVCo has published EMV® 3-D Secure Protocol and Core Functions Specification v2.0.0 (EMV 3DS 2.0 Specification). The new specification provides a globally interoperable framework that promotes a consistent consumer experience across all e-commerce channels and connected devices when authenticating a cardholder. The specification is available, royalty free, from the EMVCo website.
3-D Secure (3DS) is a messaging protocol that enables consumers to authenticate themselves with their card issuers when making card-not-present (CNP) purchases or verifying their identity for various non-payment activities, like adding a payment card to a digital wallet. The exchange of data between the merchant using 3DS and a card issuer to authenticate a cardholder reduces the risk of fraud.
The EMV 3DS 2.0 Specification:
- Supports specific app-based purchases on mobile and other consumer devices, and traditional browser-based e-commerce channels.
- Improves the consumer experience by enabling intelligent risk-based decisioning that encourages frictionless consumer authentication.
- Delivers industry leading security features.
- Specifies use of multiple options for step-up authentication, including one-time passcodes as well as biometrics via out-of-band authentication.
- Details functionality that enables merchants to integrate the authentication process seamlessly into their checkout experiences, for both app and browser-based implementations.
- Offers performance advancements for end-to-end message processing.
- Adds a non-payment message category to provide cardholder verification details to support various non-payment activities.