An EMV 3DS2 Access Control Server (ACS) for card issuers — delivering frictionless, risk-based authentication for online transactions while meeting PSD2 SCA requirements. Supports challenge flows via OTP, biometric, and out-of-band authentication, with full exemption management and analytics.
Architecture Overview
Click to expand. The diagram shows the full 3DS2 protocol flow — from cardholder browser through the merchant requestor, directory server, ACS, and back to the acquirer.
Platform Capabilities
Key Features
Risk-based decisioning analyses 100+ data points per transaction to approve as many transactions frictionlessly as possible — reducing cart abandonment while maintaining fraud control.
Challenge cardholders via SMS OTP, push notification, biometric, or out-of-band app authentication — configurable per issuer, card product, and risk level.
Automatically apply PSD2 exemptions — transaction risk analysis, low-value, trusted beneficiary, and corporate — to reduce unnecessary challenges on low-risk transactions.
Monitor authentication rates, challenge rates, abandonment, and fraud by channel, merchant, and card product — with drill-down to individual transaction detail.
Typical Use Cases
Get Started
Proximo's specialists will scope the implementation, manage the vendor relationship, and deliver a production-ready system — configured for your APAC market.
Discuss 3DS2 Implementation