<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Override CVV validation for CIM account in Integration and Testing</title>
    <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61527#M35959</link>
    <description>&lt;P&gt;Can you help me understand your workflow? CVV is&amp;nbsp;not a required field and the card validation is optional.&amp;nbsp;The answer to your question&amp;nbsp;may depend on how profiles are entered into the Authorize.Net system.&lt;/P&gt;</description>
    <pubDate>Tue, 06 Feb 2018 23:01:34 GMT</pubDate>
    <dc:creator>mmcguire</dc:creator>
    <dc:date>2018-02-06T23:01:34Z</dc:date>
    <item>
      <title>Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/34896#M19311</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Here's is one feature I would really like to have: for customer accounts that we store in CIM, allow for charges to go through without CVV code. &amp;nbsp;At the moment, CVV validation is a global setting. &amp;nbsp;Either you have it for all or for none. &amp;nbsp;The ideal situation for us is to be able to check for CVV validity for new cards/accounts, but once we store that info in CIM we don't require CVV to process charges.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The point of CIM is to make it easy for our customers to make subsequent transactions. &amp;nbsp;It takes away from this convenience if they still have to take their card out to look up their CVV on their subsequent transactions.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can you (Authorize) please consider this feature? &amp;nbsp;Thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;P&lt;/P&gt;</description>
      <pubDate>Thu, 04 Jul 2013 00:34:54 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/34896#M19311</guid>
      <dc:creator>privateuly</dc:creator>
      <dc:date>2013-07-04T00:34:54Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/34934#M19349</link>
      <description>&lt;P&gt;I would like this as well. Makes no sense to require CVV after the initial check.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Jul 2013 01:15:18 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/34934#M19349</guid>
      <dc:creator>TJPride</dc:creator>
      <dc:date>2013-07-09T01:15:18Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/34962#M19377</link>
      <description>&lt;P&gt;Thank you privateuly and TJpride for your feedback.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I've passed your suggestion on to our product team for consideration in a future release.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Richard&lt;/P&gt;</description>
      <pubDate>Wed, 10 Jul 2013 18:46:48 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/34962#M19377</guid>
      <dc:creator>RichardH</dc:creator>
      <dc:date>2013-07-10T18:46:48Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/34966#M19381</link>
      <description>&lt;P&gt;Thank you Richard.&amp;nbsp; Hope to see this feature in the product.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 11 Jul 2013 02:17:41 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/34966#M19381</guid>
      <dc:creator>privateuly</dc:creator>
      <dc:date>2013-07-11T02:17:41Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/56021#M30840</link>
      <description>&lt;P&gt;Hi Richard,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is a real problem for us - our platform allows caterers to use the CIM to process payments from regular customers.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;However, if the caterer wants to use CVV for new/customers without saved cards then he needs to contact the Customer to obtain the CVV for the CIM transactions. This is impractical for high activity/low transaction values as well as an inconvenience to the customer.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Given this conversation was 3 years ago, I'm assuming you're not planning to change as per the suggestion, above?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there any way around this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Oct 2016 15:15:10 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/56021#M30840</guid>
      <dc:creator>murraymcnicol</dc:creator>
      <dc:date>2016-10-24T15:15:10Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/56023#M30842</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/20788"&gt;@murraymcnicol﻿&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;One possible solution is turning off requiring CVV in the Merchant Interfaceuse and use the new &lt;A href="https://developer.authorize.net/api/reference/features/customer_profiles.html" target="_self"&gt;Accept Customer hosted forms&lt;/A&gt;&amp;nbsp;with set&amp;nbsp;hostedProfileCardCodeRequired as True.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;However, we would strongly recommend discussing this change with your merchant account provider before making any change so you understand possible implications.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Richard&lt;/P&gt;</description>
      <pubDate>Mon, 24 Oct 2016 18:08:48 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/56023#M30842</guid>
      <dc:creator>RichardH</dc:creator>
      <dc:date>2016-10-24T18:08:48Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61512#M35948</link>
      <description>&lt;P&gt;Has there been a better workaround or solution for this yet?&amp;nbsp; It has been 5 years.&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Feb 2018 04:44:05 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61512#M35948</guid>
      <dc:creator>ngobo413</dc:creator>
      <dc:date>2018-02-06T04:44:05Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61527#M35959</link>
      <description>&lt;P&gt;Can you help me understand your workflow? CVV is&amp;nbsp;not a required field and the card validation is optional.&amp;nbsp;The answer to your question&amp;nbsp;may depend on how profiles are entered into the Authorize.Net system.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Feb 2018 23:01:34 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61527#M35959</guid>
      <dc:creator>mmcguire</dc:creator>
      <dc:date>2018-02-06T23:01:34Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61835#M36235</link>
      <description>&lt;P&gt;I have the same requirement.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We run lots of online card not present sales transactions and want CVV to be required to protect against fraud.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In our case, if customer chooses to save card info in CIM, we don't mind making them enter CVV again when charging to the saved card, althoug ideally, we would let them run charges without it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But when a customer chooses a multiple payments option for an invoice, we want our merchant to be able to run the saved card, without knowing the CVV.&amp;nbsp; So we'd like a way to send the transaction request with a flag to indicate that we want to skip the CVV check in that case.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is similar to the caterer use case to allow the merchant to run the saved card to pay for a customer invoice.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So is there any way to do this short of saving the CVV codes in our own database, which defeats the purpose of CIM (for reduced PCI scope)?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or does auth.net recommed we dump CIM and store all card info ourselves for such cases?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or, can we flip it around and turn OFF CVV validation for the whole merchant account and then have an override to turn it back on for&amp;nbsp;online end customer entered CNP transactions?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 24 Feb 2018 19:25:04 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61835#M36235</guid>
      <dc:creator>krobson</dc:creator>
      <dc:date>2018-02-24T19:25:04Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61836#M36236</link>
      <description>&lt;P&gt;&lt;a href="https://community.developer.cybersource.com/t5/user/viewprofilepage/user-id/11584"&gt;@krobson&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When the customer enter their card data the first time, are you using your own form or an Authorize.Net Accept solution?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also, I should mention it is strictly prohibited by PCI DSS to save a CVV number.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Richard&lt;/P&gt;</description>
      <pubDate>Sun, 25 Feb 2018 17:56:44 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61836#M36236</guid>
      <dc:creator>RichardH</dc:creator>
      <dc:date>2018-02-25T17:56:44Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61837#M36237</link>
      <description>&lt;P&gt;I am just building the CIM solution now and running into the problem I described.&amp;nbsp; &amp;nbsp;We are not using the accept solution yet but I don't see how that makes any difference here.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I played around in the sandbox for hours yesterday trying to figure out how to make CVV required for normal online sales transactions, but not required when paying from a saved payment profile.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;First of all, the&amp;nbsp;createCustomerProfileTransaction API request seems to require the cardCode element no matter what, whether non matching CVV triggers a decline or not.&amp;nbsp; I changed my settings both ways on the account and either way, without a cardCode element, I get an error.&amp;nbsp; And a blank value also always returns an error.&amp;nbsp; And a space value returns some invalid data type error.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Further, from the merchant console, when I try to charge the card from the payment profile, it also requires CVV, even with&amp;nbsp;all&amp;nbsp;CVV filters turned off or set to accept txn even on mismatch.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So - what is the point of CIM?&amp;nbsp; If you can't save CVV due to PCI rules and have to get the card code from the customer for every transaction, you might as well have them also tell you&amp;nbsp;the card number and everything else.&amp;nbsp; I guess it's only useful to present save cards to the customer on the payment page and let them enter just CVV to run the charge.&amp;nbsp; But the merchant cannot run a charge against a saved customer card without contacting them for the CVV I guess.&amp;nbsp; &amp;nbsp;Do I have this right?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The main objective of this project was to allow customers to pay large invoices in installments where they authorize us to run the payments on a schedule after customer enters all the card info for the initial payment (and then we save it in CIM).&amp;nbsp; So is there any way to do this without having to contact the customer again for the CVV which defeats the purpose?&amp;nbsp; It seems that even if CVV is not required for regular online transactions, the CIM transaction API still requires it.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any advice greatly appreciated.&amp;nbsp; This is becoming a giant time sink for me here.&lt;/P&gt;&lt;P&gt;KR&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 25 Feb 2018 18:31:11 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61837#M36237</guid>
      <dc:creator>krobson</dc:creator>
      <dc:date>2018-02-25T18:31:11Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61857#M36256</link>
      <description>&lt;P&gt;ok, I finally figured this out.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The problem was that in my settings for Payment Form / Form Fields, I had the CVV field set to required.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I found another post in the forums here which explained that this setting applies not just to the hosted payment form but to API's as well.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So after&amp;nbsp;unchecking the required checkbox, I was able to submit a transaction to charge a payment profile WITHOUT including CCV code, even though my CCV filters are on and I have the Does Not Match (N)&amp;nbsp;result&amp;nbsp;set to DECLINE.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The transaction was approved with cvvResultCode = P, which means NOT PROCESSED.&amp;nbsp; I do have my filters set to allow reslut code P.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So it looks like I can accomplish what I want here - to require security codes for some transactions and not others.&amp;nbsp; Whew!&amp;nbsp; That&amp;nbsp;took 4 days of&amp;nbsp;research to figure out.&amp;nbsp; I hope this post will save some time.&lt;/P&gt;</description>
      <pubDate>Tue, 27 Feb 2018 15:33:02 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/61857#M36256</guid>
      <dc:creator>krobson</dc:creator>
      <dc:date>2018-02-27T15:33:02Z</dc:date>
    </item>
    <item>
      <title>Re: Override CVV validation for CIM account</title>
      <link>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/90920#M57159</link>
      <description>&lt;P&gt;When you have the card code required on the createCustomerPaymentProfile hosted page but NOT required for every transaction, is it validated initially? The answer seems to be no, as in our testing we can submit a CCV that gives cvvResultCode = P, but it still goes ahead and makes the payment profile and says the validation transaction was successful. So how are we supposed to validate the CVV for CIM?&lt;/P&gt;</description>
      <pubDate>Tue, 10 Dec 2024 16:44:57 GMT</pubDate>
      <guid>https://community.developer.cybersource.com/t5/Integration-and-Testing/Override-CVV-validation-for-CIM-account/m-p/90920#M57159</guid>
      <dc:creator>Akhack</dc:creator>
      <dc:date>2024-12-10T16:44:57Z</dc:date>
    </item>
  </channel>
</rss>

