licensed2kill, on Feb 7 2004, 07:11 AM, said:
One thing: My credit module is not automated. I collect the info and process it offline. You think this is much more safer than the automated if these are stolen cards?
When processing orders manually, there are a couple of steps you can take to protect yourself from fraud:
1. You should *always* use the address verification system to ensure that the billing address provided by the customer matches the billing address on record with the financial institution.
There is a toll-free number in North America for checking Visa and MasterCard addresses (not sure about Amex as I don't accept it). Ask your bank for the number.
Through that number, you can also obtain the phone number of the cardholder's issuing bank. If you can't verify the address automatically, you can call the financial institution, identify yourself as a merchant trying to do an address verification, and ask them to confirm the information you have. They will ask you to provide the cardholder name and address, and just confirm whether it matches or not. They will not give you the correct information if the info you provide is wrong. (Note: Some banks have updated their policies and will not provide confirmation, but many still will.)
2. Seriously consider restricting the countries you offer service to. I've had far more fraudulent order attempts from countries like Nigeria, Indonesia and Malaysia than others, but there are many more. Read up on credit card fraud and you'll find much information on this.
3. Follow your gut instinct. If you've got a bad feeling about it, refuse to process the order -- especially if you get clues that don't match as in #1 and 2 above!
In 7 years of being online, I've only been hit a couple of times with fraudulent orders because I'm so vigilant. Yes, I've frustrated a couple of customers, but my bank account has remained intact.
HTH,
Terry
Terry Kluytmans
Contribs Installed: Purchase Without Account (PWA); Big Images, Product Availability, Description in Product Listing, Graphical Infobox, Header Tags Controller, Login Box, Option Type Feature, plus many layout changes & other mods of my own, like:
Add order total to checkout_shipment
Add order total to checkout_payment
Add radio buttons at checkout_shipping (for backorder options, etc.)
Duplicate Table Rate Shipping Module
Better Product Review Flow
* If at first you don't succeed, find out if there's a prize for the loser. *