High Security Standards

We take security extremely seriously. Through rigorous security checks, safe data storage, employee screenings and compliance with every available regulation, we ensure the safety, stability and reliability of our payment platform. We always seek new technology, process, and risk assessment and independent testing to keep on improving.

Certifications & Compliance

We have a dedicated compliance team to review procedures and policies and to align them with standards, and to determine what controls, processes, and systems are needed for compliance.

PCI DSS Level 1 compliance

Payment Card Industry Data Security Standard (PCI DSS) is one of the security standards created by major payment systems. Compliance with this standard makes online transactions secure and protects them against identity theft.

Level 1 PCI compliant
Industry recognition
No need for you to be PCI compliant
No prohibited data storage

VISA Third Party Agent (TPA) and Mastercard Registration Program (MRP)

Our VISA TPA and Mastercard MRP registrations are an added layer of security for our clients. All service providers who have access to cardholder data must comply with the data security requirements.

Google Pay

ValoraPay is officially featured in the Google Pay list of participating processors. It allows our clients to easily implement this in-demand payment method and securely process Google Pay transactions.

Apple Pay

We've implemented the Apple Pay token decrypt service, which allows our clients to decrypt Apple Pay tokens and transfer the card data to the providers instead of transferring tokens.

PSD2 compliant software

PSD2 is the second iteration of the Payment Services Directive implemented by the European Union. It enables bank customers to use third-party providers to manage their finances with strong customer authentication (SCA).

Secure Infrastructure

ValoraPay meets the highest standards of security, integrity and stability. We understand that you entrust your data to us, and we do everything possible to keep it secure and continuously look for opportunities to improve.

AWS

Amazon Web Services

Our payment platform runs entirely on Amazon Web Services (AWS), a secure cloud services platform that offers computing power, database storage, and other functionality helping us scale and grow.

CF

Cloudflare

Cloudflare helps us mitigate DDoS attacks of all forms and sizes and enhances the security of our platform.

🔐

SSL Certificate

Our website is secured by SSL certificate.

2FA

Two-Factor Authentication

Our users are prompted to authenticate with their password and verification code. The additional layer of security ensures that only authorised ValoraPay users can access their account.

Infrastructure Reliability

ValoraPay's PCI-compliant payment platform runs entirely on AWS, relying on security best practices and auditability.

Hosting Facilities

99.95% Uptime

Monitoring

DDoS Protection

Latency

Processing Speed

3D Secure (3DS)

ValoraPay supports both 3D Secure 1 and 3D Secure 2 authentication protocols. 3DS2 offers a better shopper experience than 3DS1 and enables a smooth in-app authentication.

3D Secure

Authentication Required

Verify your identity

A verification code has been sent to your registered mobile number

Native In-App Authentication
Keep Your Transactions SCA-Compliant
Shift Chargeback Liability
Lift Authorisation Rates
Take Advantage Of Exemptions

Card Vault & Tokenisation

Enjoy safe transactions and tokenised data without any additional fees. Accept payments with or without PCI compliance thanks to our tokenisation technology, which always keeps your customers' data secure and enables you to focus on your business.

Charge one card multiple times, without asking a customer to re-enter the details
Make a free of charge authorisation to block funds on the customer's card to have time for customer verification using our fraud score
Offer one-click payments to simplify the purchasing flow
Create charges, subscriptions, or plans with just a few lines of code
VISA
---- ---- ---- ----

Card holder

Alex Bolton

Valid thru

10/28

Card FingerprintQSHAT...7A
Fraud ScoreSafe
1

Customer Enters Card Data

A customer inputs their credit card details. It can be done by using a custom form, Checkout, or directly with API.

2

Token Is Created On Our Side

A token is created in our API and card details are sent to our token server.

3

Token Is Sent Back To You

The token is sent to your backend. You can securely process the payments, even without PCI compliance — leave it to us.

Secure Online Payments

Security of online payments is a significant concern not only for cardholders. Banks, payment service providers, platforms, and merchants are also interested in the security of the payment process.

How It Works?

Security of payment data underlies every solution of our platform. ValoraPay complies with the highest standards through rigorous security checks, safe data storage, staff control, and compliance with all the available regulations. We take the matter of security seriously to ensure the maximum data safety and reliability of the platform.

The new technologies are always on our radars: we assess risks and perform independent audits to ensure stability, reliability, and safety throughout the platform.

PCI DSS

Our platform complies with the strictest security standard — PCI DSS Level 1. The annual onsite audit ensures the highest levels of compliance are maintained. It also allows us to relieve the PCI burden from our customers and deal with the banks on their behalf.

VISA TPA & MRP

Being registered in Mastercard Registration Program and as VISA Third Party Agent, we provide our clients with an additional safety layer.

ISO 9001, 27001

ValoraPay has both ISO 9001 and ISO 27001 standards. ISO 9001 specifies the requirements for Quality Management System. ISO/IEC 27001:2013 certification covers Application, Systems, People, Technology, and Processes.

PSD2

We support PSD2 - the Payment Services Directive that enables third-party providers to manage bank customers' finances with their direct permission and through enhanced authentication.

GDPR

GDPR is aimed to protect the personal data and privacy of European Union citizens. The regulation ensures that clients' identity details are collected only when they have given explicit and reasonable consent.

Secure Payment Methods

Our payment orchestration platform uses 3D Secure technologies (both 1 and 2). This helps to verify a cardholder's identity in real-time and make each transaction secure. After entering the card number, its owner is redirected to the issuing bank server. Usually, after that banks send an SMS with a secret code to be used as a confirmation. When the received code is entered, the cardholder's identity is confirmed and the transaction is authorised.

Fraud Prevention

Our platform entails a system that evaluates transactions online and detects suspicious ones. After a thorough analysis of each transaction, the system recommends rejecting or applying an additional check. In case of a fraud suspicion, the system can prevent money debiting.

ValoraPay anti-fraud system can operate according to different parameters:

Limits on transactions from one IP address
Restrictions on the amount
Number of purchases
Constantly changing algorithm
Assessment of customer behaviour in the payment flow
Transactions based on statistics, etc.

Anti-fraud evaluates all operations and identifies the abnormal and suspicious ones. It is also capable of identifying a fraudster with the maximum degree of probability or defining buyers' card transactions as trusted.

Enjoy secure payments processing without putting your funds, reputation, and customers' sensitive data in jeopardy.

Safe
Blocked
Review

Ready To Boost Your Business To The Next Level?

Get in touch with us and we will try to provide you with the most relevant offer.

Book a call