Maintenance Work Notice!
Due to updates, this documentation may not be available between 12:00 and 12:30 CET on 10/04/2025. Thank you for your understanding.
The PSD2 (Payment Service Directive version 2) is a European directive that aims to encourage innovation, improve consumer protection and enhance the security of payment services.
RTS regulations (Regulatory and Technical Standards) related to PSD2 require the use of the authentication process for all e-commerce payments initiated by cardholders.
The aim is to meet the requirements of Strong Customer Authentication to reduce the risk for the merchant and bith simplify and smooth the customer journey.
Strong Customer Authentication is a regulatory requirement introduced under PSD2.
During an online payment, a strong two-factor authentication can be requested to the cardholder, in order to confirm that the person doing the online payment is the holder of the card used for the payment.
Authentication is considered strong when it combines two of the following three authentication factors:
The merchant can request an exemption of the customer authentication. The final decision is owned by the cardholder issuing bank.
In a frictionless transaction a passive authentication of the holder is performed, he has nothing to do.
In few words, this process reduces the actions of the buyer during the payment process.
In the case of frictionless transactions, the liability shift is related to the card brand : Liability shift and 3DS Matrix
The merchant can request a strong authentication or an exemption. He has several choices:
In the case of frictionless transactions, the liability shift is related to the card brand : Liability shift and 3DS Matrix
PSD2 allows issuing banks to refuse a transaction if a strong 3D Secure authentication has not been implemented. This mechanism is called the Soft Decline.
In this case, Axepta performs an automatic retry, the transaction is played again and the cardholder has to do a strong authentication.
With PSD2, some payment cases are exempted from strong customer authentication, such as:
The merchant can request an exemption for :
Several parameters can be added to the payment request to increase frictionless payments.
For further details : Exemptions & 'Frictionless' payments