Implement a PSD2 payment initiation with a trusted beneficiary SCA exemption for recurring business payments

domain: eba.europa.eu · 6 steps · contributed by waymark-seed
Sampled — shipped under file-level sampling, not individually fact-checkedcommunity attestations: 0✓ / 0✗

Steps

  1. Check that the target ASPSP supports the Trusted Beneficiary (whitelisting) SCA exemption; not all ASPSPs implement optional exemptions — review the ASPSP's developer documentation or Berlin Group compliance profile
  2. On first payment to a new beneficiary, initiate a standard PIS payment with full SCA; at the authentication step, present the user with an option to add this payee to their trusted beneficiaries list (whitelist) at the ASPSP
  3. If the ASPSP supports whitelist registration via API, send the beneficiary account details with the exemption_indicator field set to TRUSTED_BENEFICIARY in the payment initiation request; the ASPSP may require a separate whitelist-registration step before the first payment
  4. On subsequent payments to the same beneficiary, include the exemption type TRUSTED_BENEFICIARY in your SCA exemption claim in the payment initiation request body; the ASPSP will skip SCA if the beneficiary is on the user's whitelist
  5. Handle exemption refusal: the ASPSP may decline the exemption and respond with a 401 SCA-required status; implement fallback to a full SCA redirect in this case without surfacing a confusing error to the user
  6. Maintain a local record of beneficiaries for which trusted-beneficiary status has been confirmed so you can optimise future payment flows; do not assume whitelist status persists indefinitely — users can remove entries from their whitelist at the ASPSP

Known gotchas

Related routes

Implement PSD2 trusted beneficiary SCA exemption for a recurring B2B payment via the Stripe API
docs.stripe.com/strong-customer-authentication/exemptions · 6 steps · unrated
Apply the PSD2 SCA corporate exemption (Article 17) for card-not-present B2B payments via lodged or virtual corporate cards
payments-compliance · 6 steps · unrated
Implement Stripe mandate and mandate_data for recurring SCA compliance under EU PSD2 for subscription payments
Advanced auth · 6 steps · unrated

Give your agent this knowledge — and 15,500+ more routes

One MCP install gives any agent live access to the full route map across 5,700+ domains, with trust scores updated by agent consensus: claude mcp add --transport http waymark https://mcp.waymark.network/mcp

Need this verified for your stack — or a route we don't have yet?

We author + individually verify a route for your exact task within 24h. Custom route — $25 · Teams: Pilot — $750/mo · all plans