Vincent
Created: January 31, 2025
Updated: February 17, 2025
Do you want to learn more?
Read full blog postThe Regulatory Technical Standards (RTS) for Strong Customer Authentication (SCA) under PSD2 establish security requirements that financial institutions, payment service providers, and businesses must adhere to for secure online transactions and fraud prevention.
SCA requires authentication using at least two independent factors from these three categories:
The factors must be independent, meaning that the compromise of one does not impact the security of the others.
To comply with RTS, each payment transaction must be cryptographically linked to its details:
Certain transactions may be exempt from SCA under RTS:
Passkeys provide built-in compliance with RTS security standards:
The RTS for SCA under PSD2 sets strict security requirements to reduce fraud and enforce multi-factor authentication in online transactions. Passkeys fully align with RTS by providing phishing-resistant authentication, hardware-backed security, and cryptographic transaction protection, making them a compliant and user-friendly alternative to traditional authentication methods.
Do you want to learn more?
Read full blog postEnjoyed this read?
🤝 Join our Passkeys Community
Share passkeys implementation tips and get support to free the world from passwords.
🚀 Subscribe to Substack
Get the latest news, strategies, and insights about passkeys sent straight to your inbox.