European payments compliance handled automatically. Flow and Stripe take care of SCA so you don't have to.
Strong Customer Authentication (SCA) is a European regulatory requirement under PSD2. It requires that online payments include at least two forms of authentication (e.g. password + one-time code). SCA applies to card-not-present transactions from European customers. In-person payments (chip & PIN, NFC) are already compliant by nature and are SCA-exempt.
When you process an online payment (payment link, invoice) requiring SCA, Stripe automatically triggers a 3D Secure challenge for the customer.
The customer is redirected or shown a native prompt from their bank to authenticate (biometric, SMS code, etc.).
After successful authentication, the payment proceeds normally. If the challenge fails, the payment is declined.
When 3DS is completed, liability for fraudulent chargebacks shifts from you to the card issuer - a major protection benefit.
Download FlowPOS for iOS or Android, connect your Stripe account, and start taking in-person payments from your phone. No hardware required for Tap to Pay.