How fraud screening works
- You send the customer’s device session in
meta.risk.sessionsand the order details inmetaon the authorize request. - A Fraud Check step in your workflow sends the payment to the fraud provider. Payrails scores it as pre-authorization when no payment exists on the execution yet, and as post-authorization after an authorize step.
- The provider returns a decision, and a Condition step routes the payment on it.
- As the order moves on, a Fraud Update step tells the provider what happened: cancelled, shipped, delivered, returned or failed.
- Payrails notifies you of each fraud result through webhook notifications.
Decisions
Every provider’s answer maps to one of these Payrails decisions. Each provider page lists how its own values map.Connect your fraud provider
Forter
Fraud prevention
Ravelin
Fraud prevention
Riskified
Fraud prevention
Signifyd
Fraud prevention
Check providers
Send the device session
Fraud providers link a payment to the customer’s device through a session ID that their client-side script creates in the customer’s browser or app. The Payrails Web Fraud SDK loads these scripts for you and passes the session to the Payrails Web SDK. If you integrate through the API, send one session per provider inmeta.risk.sessions. Payrails gives each provider its own session, so you can run more than one provider in the same workflow.
Risk sessions
Build your fraud workflow
- Authorization with fraud screening runs a Fraud Check before authorization and branches on the decision.
- Capture with fraud update tells the fraud provider what happened after capture.
- Full authorization combines fraud screening with 3D Secure for risk-based routing.