EMVCo Launches EMV Secure Remote Commerce Technical Framework
By FF Newsroom · 2 November 2017

New framework provides a foundation to evolve the remote commerce environment to offer greater security, convenience and interoperability
Technical body EMVCo has publicly released EMV® Secure Remote Commerce (SRC) – Technical Framework version 1.0. The framework describes the roles, high level processes and data descriptions that enable card data to be protected and exchanged in a consistent and secure manner within the remote commerce environment. The technical framework will be followed by the publication of a detailed specification that defines the protocol and core functions.
Remote commerce refers to the purchase of goods and services by consumers via applications and browsers on mobile phones, tablets, desktop computers and Internet-connected devices.
EMV SRC will address the complexities and potential vulnerabilities within the remote payments environment by defining a consistent approach to enable the secure transmission and interaction of payment card data among participants. This helps reduce exposure to data compromise and simplify merchant support of these solutions.
The goals of EMVCo’s SRC work are to:
- Extend the approach to security successfully utilised at the physical point-of-sale to the remote payments environment.
- Reduce ecosystem complexity by providing consistent and simplified integration processes and interfaces among stakeholders.
- Enhance the security of remote commerce websites and applications through the introduction of dynamic data to enable the secure transmission of payment and checkout information.
- Provide integration options for other EMV Specifications, including EMV 3-D Secure and EMV Payment Tokenisation.
- Reduce the requirement for cardholder data entry by enabling the consistent identification of the consumer, potentially lowering shopping cart abandonment.