PayXpert - User documentation
Merchant PIN code for cancellations and refunds
About the Merchant code
For sensitive transactions like refunds, it is a good idea to protect yourself via a PIN code. This will prevent fraudulent refund transactions, where someone using the POS could credit the wrong account, fraudulently.
This is not the Admin user PIN (which only protects your Main Menu items) but a different PIN code called the “Merchant code”, is requested at the end of the cancellation and refund workflows, right before we cancel the transaction / refund the cardholder:
The "Merchant validation for cancellation and refund transactions" feature is essential to ensure the security and integrity of transactions made through the PayXpress system but also to comply with the current CB FRV6 regulations. For cancellation and refund transactions, it is necessary for the merchant to give his formal agreement or consent before these transactions are processed.
Therefore, this means that the merchant must confirm that he authorizes the cancellation of a recorded debit transaction or a credit/refund. This validation can be formalized in several ways:
No PIN code - just confirmation
Just by Tapping confirm on the confirmation screen* the user can perform the refund and/or cancellation.
The electronic payment terminal (EPT) can be equipped with a Confirm button or a functionality allowing the merchant to approve the cancellation of the transaction by tapping this button.
*Even though it is possible for the merchant to disable this PIN requirement, this requires a thorough analysis between the merchant and PayXpert to assess the specific conditions. Factors such as the system used (standalone or integrated), the explicit identification of the merchant at the time of performing the action, and other security criteria must be taken into account to determine the feasibility of this deactivation.
PIN code entry
Entering the Merchant code is another method of validation, prompting the user to enter a 6-digit PIN code to confirm the cancellation or credit (refund transaction). This PIN code is an additional security measure to ensure that only authorized persons can validate these operations.
If the user forgets the Merchant code there is a way to reset it. See Change settings | Reset the Merchant code.
Merchant code formats
If a Merchant code (instead of none) is set, then it can be:
a 6-digit code
a ddmm format which changes every day
In summary, the merchant validation feature ensures that cancellations and credit transactions can only be performed with the explicit consent of the merchant, thus reinforcing the security and reliability of the PayXpress payment system.
How to enable
If you are a Partner see Personalization of PayXpress | Merchant code for more info.