{"id":97948,"date":"2019-12-30T13:19:12","date_gmt":"2019-12-30T19:19:12","guid":{"rendered":"https:\/\/wpengine.com\/?post_type=resource&#038;p=97948"},"modified":"2024-01-01T06:51:22","modified_gmt":"2024-01-01T12:51:22","slug":"strong-customer-authentication","status":"publish","type":"resource","link":"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/","title":{"rendered":"Enabling Strong Customer Authentication (SCA) in WordPress"},"content":{"rendered":"\n<p>There are many things to consider when buying and selling items online. Whether you have a large eCommerce operation or a side-gig selling products on eBay, protecting yourself and your customers against fraud should be a central part of your business plan.&nbsp;<\/p>\n\n\n\n<p>With that in mind, Strong Customer Authentication (SCA) is a way to verify the identity of anyone initiating a purchase online. In fact, the European Union (EU) has included this particular process in its <a href=\"https:\/\/www.forbes.com\/sites\/jordanmckee\/2019\/04\/14\/strong-customer-authentication\/#1e137afe19a0\">revised Payment Services Directive (PSD2) regulations<\/a>. It\u2019s now a requirement for merchants conducting sales in the European Economic Area (EEA) to enable SCA methods during checkout.&nbsp;<\/p>\n\n\n\n<p>In this article, we\u2019ll provide an overview of what SCA is and how it can impact WordPress users. We\u2019ll also take a look at some SCA-ready plugins and services. Let\u2019s dive right in!<\/p>\n\n\n\n\n\n<h2 class=\"wp-block-heading\">What Is Strong Customer Authentication?<\/h2>\n\n\n\n<p>When it comes to the regulation of online and digital activities, the EU has been quite active recently. One example is the recent <a href=\"https:\/\/wpengine.com\/blog\/gdpr-is-coming-is-your-dxp-ready\/\">General Data Privacy Regulation (GDPR)<\/a>, which has had an impact on websites and businesses of all types.<\/p>\n\n\n\n<p>Turning its attention to online payment security, the EU enacted a law in September 2019 that requires merchants to use SCA at checkout if the customer\u2019s bank or card issuer is a part of the EEA. This means that verification of the customer\u2019s address or card CVV alone is no longer enough to verify their identity and complete a transaction.&nbsp;<\/p>\n\n\n\n<p>SCA employs <a href=\"https:\/\/wpengine.com\/blog\/two-factor-authentication\/\" target=\"_blank\" rel=\"noreferrer noopener\">Two-Factor Authentication (2FA)<\/a>, meaning that customers will have to fulfill two of the three verification methods available:&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Knowledge. <\/strong>To fulfill this method, the user would need to enter something only they know, such as a predesignated PIN or password. However, the information can not be a card number, CVV, or expiration date.<\/li>\n\n\n\n<li><strong>Possession. <\/strong>This option involves using something only the customer possesses, such as a personal phone or other mobile device.<\/li>\n\n\n\n<li><strong>Inherence.<\/strong> This is where biometric technology comes in. This method generally involves verifying the customer via a fingerprint, iris scan, or facial recognition.&nbsp;<\/li>\n<\/ul>\n\n\n\n<p>For now, if you\u2019re a merchant in the US, you don\u2019t have to comply with the SCA requirement unless you are actually registered in the EEA. However, making sure you are SCA-ready can help you retain customers. Otherwise, you may find that customers are unable to complete purchases if they are using an EEA-issued payment method.&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">SCA Impacts on WordPress Users<\/h2>\n\n\n\n<p>Global online sales have hit <a href=\"https:\/\/www.statista.com\/statistics\/379046\/worldwide-retail-e-commerce-sales\/\">$3.53 trillion in 2019<\/a>, and projections continue to trend upward over the next few years. With that in mind, even if you\u2019re a merchant that\u2019s physically located outside of the EEA, you can\u2019t really ignore SCA.<\/p>\n\n\n\n<p>This is especially true if you\u2019re using WordPress to host your eCommerce store. Since the combination of WordPress and <a href=\"https:\/\/woocommerce.com\/\">WooCommerce<\/a> is the <a href=\"https:\/\/barn2.co.uk\/woocommerce-stats\/\">most popular eCommerce solution<\/a> on the market, it makes sense to pay close attention to how SCA is handled by both platforms.<\/p>\n\n\n\n<p>One of the best things about WordPress is that it opens up the opportunity to participate in the global market to just about anyone. If you\u2019re selling anything online, there\u2019s a chance you\u2019ll have customers in the EEA. Therefore, we recommend staying ahead of the curve.<\/p>\n\n\n\n<p>You can do this by making sure your WordPress website is ready for SCA. In fact, many big-name eCommerce entities, such as Apple, have already <a href=\"https:\/\/stripe.com\/guides\/strong-customer-authentication\">implemented SCA methods<\/a>. Similarly, many of the most popular payment platforms have also made adjustments to accommodate SCA requirements.&nbsp;<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">SCA-Ready Plugins and Services<\/h2>\n\n\n\n<p>Staying on top of changes to the digital regulation landscape can set you apart if you\u2019re running or designing websites. Whether you\u2019re working for yourself or a client, knowing what plugins and services are already SCA-compliant can be a real time saver as well.&nbsp;<\/p>\n\n\n\n<p>There are a number of well-known payment options that have already made an effort to be SCA-compliant. For example, WooCommerce <a href=\"https:\/\/woocommerce.com\/product-category\/woocommerce-extensions\/payment-gateways\/\">has made it easy<\/a> to review the SCA status of all the payment gateways you can use with its platform, including:&nbsp;<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/woocommerce.com\/products\/stripe\/\"><strong>Stripe<\/strong><\/a>. Stripe is a popular payment option that\u2019s available in over 40 different countries, and can deal in more than 135 currencies.&nbsp;<\/li>\n\n\n\n<li><a href=\"https:\/\/woocommerce.com\/products\/pay-with-amazon\/\"><strong>Amazon Pay<\/strong><\/a>. While this payment option is a part of the booming Amazon system, Amazon Pay is only offered in 17 countries. However, it is SCA compliant and a trusted brand name.&nbsp;<\/li>\n\n\n\n<li><a href=\"https:\/\/woocommerce.com\/products\/klarna-payments\/\"><strong>Klarna Payments<\/strong><\/a>. This is a payment system offered by one of Europe\u2019s largest banks, and is available for merchants selling products in central Europe, Scandinavia, the United Kingdom, and the US.&nbsp;<\/li>\n\n\n\n<li><a href=\"https:\/\/woocommerce.com\/products\/klarna-checkout\/\"><strong>Klarna Checkout<\/strong><\/a>. Offered as a companion option for Klarna Payments, this checkout feature provides a well-tested and optimized checkout experience&nbsp;<\/li>\n\n\n\n<li><a href=\"https:\/\/woocommerce.com\/products\/sofort-payment-gateway\/\"><strong>Sofort<\/strong><\/a>. This is another large, European bank option that covers 13 countries and four currencies (but does not include the US dollar).&nbsp;<\/li>\n\n\n\n<li><a href=\"https:\/\/woocommerce.com\/products\/woocommerce-global-payments-direct\/\"><strong>Global Payments Gateway<\/strong><\/a><strong>.<\/strong> As the name suggests, this gateway is expansive and flexible. It includes over 140 payment methods, and operates in 170 different countries.<\/li>\n\n\n\n<li><a href=\"https:\/\/woocommerce.com\/products\/woocommerce-gateway-paypal-powered-by-braintree\/\"><strong>PayPal<\/strong><\/a>. A trusted name in online payments, PayPal from <a href=\"https:\/\/www.braintreepayments.com\/\">Braintree<\/a> makes it possible for all US and non-US store owners to accept many forms of payment, and offers an easy setup process.&nbsp;<\/li>\n<\/ul>\n\n\n\n<p>Globally, PayPal <a href=\"https:\/\/www.merchantsavvy.co.uk\/mobile-payment-stats-trends\/\">is the third<\/a> most-used payment gateway, followed by Apple and Amazon Pay. Since 54% of customers surveyed said that having more payment options makes a difference in their checkout experience, and a lack of payment options is a major contributing factor to shopping cart abandonment, it\u2019s good that so many popular options are already SCA compliant.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Ensuring That Your Site Is SCA Compliant<\/h2>\n\n\n\n<p>When you make sure that your site is SCA complaint, you\u2019re really shifting the burden of verification back to the card issuer. While some business owners have feared that the added steps during checkout will impact their conversion rates, this is a step that should benefit your site in the long run.<\/p>\n\n\n\n<p>The goal of SCA is to decrease the frequency of payment fraud online. Consequently, ensuring that your WordPress site is SCA complaint is a smart move. One of the easiest ways to do this is to make sure you\u2019re using one of the SCA-friendly payment gateways from our list above.<\/p>\n\n\n\n<p>For example, the <a href=\"https:\/\/stripe.com\/docs\/plugins\/wordpress\">Stripe WordPre<\/a><a href=\"https:\/\/wordpress.org\/plugins\/stripe-payments\/\">ss plugin<\/a> offers <a href=\"https:\/\/stripe.com\/docs\/strong-customer-authentication\/plugins\">extensive documentation<\/a> on SCA compliance. In fact, once you configure the plugin for SCA, you can use Stripe\u2019s <a href=\"https:\/\/stripe.com\/docs\/payments\/3d-secure#three-ds-cards\">3D Secure test cards<\/a> to make sure your checkout experience is working correctly.\u00a0<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Keep Your Site Up to Speed With WP Engine<\/h2>\n\n\n\n<p>Staying abreast of changes to eCommerce compliance requires excellent <a href=\"https:\/\/developer.wordpress.org\/\">developer resources<\/a> and a secure, professional web host.<\/p>\n\n\n\n<p>Here at WP Engine, we offer plans and solutions that can keep you up-to-date and compliant with important regulations. Check out our <a href=\"https:\/\/wpengine.com\/plans\/\">hosting plans<\/a> for your next project!<\/p>\n","protected":false},"excerpt":{"rendered":"<p>There are many things to consider when buying and selling items online. Whether you have a large eCommerce operation or a side-gig selling products on eBay, protecting yourself and your customers against fraud should be a central part of your business plan.&nbsp; With that in mind, Strong Customer Authentication (SCA) is a way to verify<span class=\"tile__ellipses\">&hellip;<\/span><span class=\"tile__ellipses--animated\"><\/span><\/p>\n","protected":false},"author":177,"featured_media":0,"template":"","resource-topic":[905,909],"resource-role":[896,903,899],"resource-type":[916],"class_list":["post-97948","resource","type-resource","status-publish","hentry"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v20.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Enabling Strong Customer Authentication (SCA) in WordPress | WP Engine\u00ae<\/title>\n<meta name=\"description\" content=\"SCA, or Strong Customer Authentication, is becoming more common amongst WordPress users. Need to get in the know? Check out the WP Engine guide.\" \/>\n<meta name=\"robots\" content=\"noindex, follow\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Enabling Strong Customer Authentication (SCA) in WordPress | WP Engine\u00ae\" \/>\n<meta property=\"og:description\" content=\"SCA, or Strong Customer Authentication, is becoming more common amongst WordPress users. Need to get in the know? Check out the WP Engine guide.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/\" \/>\n<meta property=\"og:site_name\" content=\"WP Engine\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/wpengine\" \/>\n<meta property=\"article:modified_time\" content=\"2024-01-01T12:51:22+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/wpengine.com\/case-studies\/wp-content\/uploads\/2024\/05\/WPE-IMG-Thumbnail-1200x630-1.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"630\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@wpengine\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/\",\"url\":\"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/\",\"name\":\"Enabling Strong Customer Authentication (SCA) in WordPress | WP Engine\u00ae\",\"isPartOf\":{\"@id\":\"https:\/\/wpengine.com\/case-studies\/#website\"},\"datePublished\":\"2019-12-30T19:19:12+00:00\",\"dateModified\":\"2024-01-01T12:51:22+00:00\",\"description\":\"SCA, or Strong Customer Authentication, is becoming more common amongst WordPress users. Need to get in the know? Check out the WP Engine guide.\",\"breadcrumb\":{\"@id\":\"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/wpengine.com\/case-studies\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Resources\",\"item\":\"https:\/\/wpengine.com\/case-studies\/resources\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Enabling Strong Customer Authentication (SCA) in WordPress\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/wpengine.com\/case-studies\/#website\",\"url\":\"https:\/\/wpengine.com\/case-studies\/\",\"name\":\"WP Engine\",\"description\":\"Managed Hosting for WordPress\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/wpengine.com\/case-studies\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/wpengine.com\/case-studies\/#\/schema\/person\/aba73ed4c15eda43b5fd78844ec31fad\",\"name\":\"Samantha Rodriguez\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/wpengine.com\/case-studies\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/933722cf8761e0c08fbced6085998032df460c5ecfa2481d9cd16f569f3da2c1?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/933722cf8761e0c08fbced6085998032df460c5ecfa2481d9cd16f569f3da2c1?s=96&d=mm&r=g\",\"caption\":\"Samantha Rodriguez\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Enabling Strong Customer Authentication (SCA) in WordPress | WP Engine\u00ae","description":"SCA, or Strong Customer Authentication, is becoming more common amongst WordPress users. Need to get in the know? Check out the WP Engine guide.","robots":{"index":"noindex","follow":"follow"},"og_locale":"en_US","og_type":"article","og_title":"Enabling Strong Customer Authentication (SCA) in WordPress | WP Engine\u00ae","og_description":"SCA, or Strong Customer Authentication, is becoming more common amongst WordPress users. Need to get in the know? Check out the WP Engine guide.","og_url":"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/","og_site_name":"WP Engine","article_publisher":"https:\/\/www.facebook.com\/wpengine","article_modified_time":"2024-01-01T12:51:22+00:00","og_image":[{"width":1200,"height":630,"url":"https:\/\/wpengine.com\/case-studies\/wp-content\/uploads\/2024\/05\/WPE-IMG-Thumbnail-1200x630-1.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_site":"@wpengine","twitter_misc":{"Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/","url":"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/","name":"Enabling Strong Customer Authentication (SCA) in WordPress | WP Engine\u00ae","isPartOf":{"@id":"https:\/\/wpengine.com\/case-studies\/#website"},"datePublished":"2019-12-30T19:19:12+00:00","dateModified":"2024-01-01T12:51:22+00:00","description":"SCA, or Strong Customer Authentication, is becoming more common amongst WordPress users. Need to get in the know? Check out the WP Engine guide.","breadcrumb":{"@id":"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/wpengine.com\/case-studies\/resources\/strong-customer-authentication\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/wpengine.com\/case-studies\/"},{"@type":"ListItem","position":2,"name":"Resources","item":"https:\/\/wpengine.com\/case-studies\/resources\/"},{"@type":"ListItem","position":3,"name":"Enabling Strong Customer Authentication (SCA) in WordPress"}]},{"@type":"WebSite","@id":"https:\/\/wpengine.com\/case-studies\/#website","url":"https:\/\/wpengine.com\/case-studies\/","name":"WP Engine","description":"Managed Hosting for WordPress","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/wpengine.com\/case-studies\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/wpengine.com\/case-studies\/#\/schema\/person\/aba73ed4c15eda43b5fd78844ec31fad","name":"Samantha Rodriguez","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/wpengine.com\/case-studies\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/933722cf8761e0c08fbced6085998032df460c5ecfa2481d9cd16f569f3da2c1?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/933722cf8761e0c08fbced6085998032df460c5ecfa2481d9cd16f569f3da2c1?s=96&d=mm&r=g","caption":"Samantha Rodriguez"}}]}},"acf":[],"grid_image_url":"https:\/\/wpengine.com\/case-studies\/wp-content\/uploads\/2019\/12\/shutterstock_367136834.jpg","media-type":{"term_id":916,"name":"Article","slug":"article"},"role":"<strong>Roles:<\/strong> Developer, Marketer, Site Owner","topic":"<strong>Topics:<\/strong> eCommerce, Security","_links":{"self":[{"href":"https:\/\/wpengine.com\/case-studies\/wp-json\/wp\/v2\/resource\/97948","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wpengine.com\/case-studies\/wp-json\/wp\/v2\/resource"}],"about":[{"href":"https:\/\/wpengine.com\/case-studies\/wp-json\/wp\/v2\/types\/resource"}],"author":[{"embeddable":true,"href":"https:\/\/wpengine.com\/case-studies\/wp-json\/wp\/v2\/users\/177"}],"wp:attachment":[{"href":"https:\/\/wpengine.com\/case-studies\/wp-json\/wp\/v2\/media?parent=97948"}],"wp:term":[{"taxonomy":"resource-topic","embeddable":true,"href":"https:\/\/wpengine.com\/case-studies\/wp-json\/wp\/v2\/resource-topic?post=97948"},{"taxonomy":"resource-role","embeddable":true,"href":"https:\/\/wpengine.com\/case-studies\/wp-json\/wp\/v2\/resource-role?post=97948"},{"taxonomy":"resource-type","embeddable":true,"href":"https:\/\/wpengine.com\/case-studies\/wp-json\/wp\/v2\/resource-type?post=97948"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}