Skip to main content
Screen payments with Cybersource Decision Manager before or after authorization. Payrails sends Decision Manager the order, customer, device and card details and maps its decision to a Payrails decision your workflow acts on. When Decision Manager holds a payment for manual review, Payrails waits for the review outcome and then continues the workflow.

Supported operations

Decision Manager returns its decision in the response. When it holds the payment for review, the Fraud Check step pauses until Cybersource sends the reviewer’s decision by webhook.

Decisions

After a manual review, the reviewer’s decision maps the same way: ACCEPT to Allow, REJECT to Prevent and REVIEW to Review. You set the rules and profiles that produce these decisions in your Decision Manager configuration at Cybersource.

Before you begin

  1. In the Cybersource Business Center, go to Payment Configuration → Key Management and generate a REST - Shared Secret key. Copy the key ID and the shared secret.
  2. In the Payrails Portal, go to Settings → Integrations and select Add instance.
  3. Select the workspaces where Cybersource should be available.
  4. Select Fraud as the integration type, then Cybersource as the provider.
  5. Enter your Cybersource details and save:
  1. In Cybersource, set up a webhook for Decision Manager case management decisions that posts to the Payrails notification URL of this integration, with the signature key you entered above.
  2. Load the Cybersource provider in the Payrails Web Fraud SDK with your Cybersource organization ID and merchant ID, or pass the device fingerprint session ID from your own integration in meta.risk.sessions.
  3. Add a Fraud Check step with your Cybersource integration to your workflow. See Authorization with fraud screening.
Payrails sends requests to the Cybersource test environment in test mode and to the live environment in live mode. Card payments must use the Payrails vault, because Payrails sends the card details through it.

Request fields for Cybersource

Send these fields in the authorize request, in addition to the standard authorize fields. Required fields must be present for the score to succeed. Payrails sends Optional fields to Cybersource when you include them. For card payments, Payrails also sends the card number, BIN, network and expiry date from the instrument.

Example authorize request

Authorize request
Last modified on October 7, 2026