9
Feb 07

Napalm is a type of explosive used in various wars (particularly Vietnam) to incinerate large areas, killing the baddies and lots of good stuff at the same time.

Credit Card fraud is undeniably an issue that still needs to be resolved, and is a leading reason that people avoid shopping online. The banks and the credit card companies (eg Mastercard) are working on various strategies to combat this, but so far their only affect is to make it nearly impossible to do anything online any more. If you hold a Standard Bank Mastercard and attempt to make a purchase online, you will probably be taken to a page that asks you to "register" your card by giving it a username and password. Theoretically this means that if someone gets hold of your wallet or card number and tries to use it, they won't know your password details.

Unfortunately there are 2 problems with this plan:
1) 95% of credit cards have never been used online, and so this registration hasn't happened yet. If your wallet gets stolen and the thief uses it for the first time, they will kindly register your card for you. The only "authentication" that is required to register a card is your ID number, which would be found on your driver's license or other identification. If the banks were serious about this, why don't they make you come in to the branch and register your card? This week a friend needed to change the postal address for his statements, and Standard Bank made him come to the branch to perform that task (and no doubt make the 500th copy of his ID book).

2) The registration process doesn't work. I sat with a client while they tried to buy a Bug Zapper, and after filling in details she was redirected to a page on Standard Bank's server where she was asked to enter a username and password. First the password was to short, then the username was "already taken", then her session had timed out, then the page was just unavailable. By then she was very frustrated with the process, and of course it appeared to her that Bug Zapper was causing the grief. She gave up and did a bank transfer.
Today I tried to renew a software product with my Standard Bank Live Alchemy card, and at the end of the process I was told that my bank wanted me to register my card. In the frame where the Standard Bank page should have loaded, this error appeared:

Standard Bank loses the plot

Certainly not the most friendly of errors. I tried the process twice, and gave up.

So why is this whole thing such a stuff up? My guess is that the banks are under pressure to cut down on credit card fraud, but the online market is not a big enough priority for them to really care about. Yesterday I quoted Arthur Goldstuck predicting that e-commerce in South Africa in 2007 would reach to R1 billion in transactions. That is a drop in the ocean for the banks (Sandton City probably does more turnover than that in a year), so they have assigned a junior IT guy to set up the registration process and look after the server. Clearly he's on sick leave this week.

It's worrying for online stores like ourselves, who depend heavily on consumers being confident (and able) to make purchases with a credit card. Here is some advice for online business owners:
1) Give customers as many different payment options as you can - bank transfers, posted cheques and cash/cheque deposits.
2) Make sure that your order process allows a customer to switch payment option midway. If they are battling with the credit card system, they should see a big link offering that they pay another way.
3) Capture the customer's details before you send them to the credit card stage. If they give up at that point your back-end system should flag the order as "unpaid", and you can phone the customer to walk them through it, or ask them to pay with another method.
4) Test, test, test! Get hold of as many different credit cards as you can (in a legal way, of course) and test your site. Then get someone fairly internet-illiterate to test your site. We only discovered the Standard Bank issue when a customer came in to our offices and made a purchase on one of our computers. That's not the type of testing you want!
5) Make your support channels very clear on the ordering pages. Offer an e-mail address, phone numbers and even live chat.

This isn't an easy time to set up shop online, as we are all pioneering something very new. But who said this business would be easy? 

Related posts:

  1. Banks have a long way to go with e-commerce Today I was helping a customer pay online with their...
  2. ‘Poor Web site performance is costing retailers millions’ myadsl.co.za has an article about how difficult it is to...
  3. An Online Opportunity (this is basic stuff) We are in the process of giving our work space...

Related posts brought to you by Yet Another Related Posts Plugin.

Category : Payment

2 Responses to “Using napalm to combat credit card fraud”


Lisa February 14, 2007

Awesome stuff!

Nice post, great read, I like the whole napalm idea lol



About Us

Enhancing e-commerce in South Africa through training, events and knowledge sharing.
Read more »

Subscribe

Subsribe via RSS Feed Reader

Contact Us

Milton's Way, Westlake Business Park,
Cape Town, South Africa

Tel : 021 702 1943

info@livealchemy.com