Dynamic CVV
Add an extra layer of security to your customers' transactions.
Introduction
The Dynamic CVV (Card Verification Value) is a 3-digit validation code that changes periodically to enhance the security of online transactions. This technology is available for configuration on our virtual Mastercard cards.
By generating a new code for each transaction, you add an extra layer of security that significantly reduces the risk of fraud in online stores, providing peace of mind for both your virtual card customers and the merchants processing the payments. It is highly effective for scam prevention, since even if a code is intercepted, it would only be valid for a short period of time.
Scope
Currently, this configuration is available for all our virtual Mastercard cards in Argentina, Brazil, Mexico, Colombia, and Peru.
Operation
Every time your users make an online purchase with their virtual card, they will have to request a dynamic CVV. The CVV will have a temporal validity of 2 minutes, which you can adjust according to your needs.
Here we share an example, step by step, of the process:
- Your customer requests to view the confidential details of their virtual card (PAN, expiration date, dynamic CVV, remaining time of the security code) to make an online purchase.
- Through your backend, you will have to request these details from us using our secure data website.
- We will generate the dynamic CVV and send it to you along with the confidential details for you to share with your customer.
- Your customer views the details and enters the dynamic CVV on the e-commerce platform.
- Completes the transaction.
- The transaction is approved.
Implementation
To implement the dynamic CVV, you need to configure, together with our team, the affinity groups of the cards in which you want to make it available.
To do this, please contact our Integration team ([email protected]) or CX team ([email protected]).
Frequently Asked Questions
Does it work for both virtual and physical cards?
No. The dynamic CVV functionality only applies to virtual cards.
Do cards that have already been issued have this functionality?
The solution does not support backward compatibility or affinity group updates. In other words, for your customers who do not have a dynamic CVV and want to have one, you will need to issue a new card for them using this API.
How long does the Dynamic CVV last?
By default, the dynamic CVV lasts 2 minutes, but you can adjust the duration according to your preferences. To do so, contact us through the Dashboard.
Is the dynamic CVV generated automatically?
Yes. The security code is generated automatically and randomly based on the defined temporal validity.
What happens with recurring transactions?
Recurring transactions, such as subscriptions to services (e.g., Netflix or Spotify) will not be affected by this new functionality. That means, after subscribing to the service, you won’t need to validate the code for each payment.
Can a dynamic CVV be invalidated?
Yes. You can refresh a card’s dynamic CVV, invalidating the current CVV and generating a new one, using this API.