Query for the latest authentication state.
- Test (Try)https://try.access.worldpay-bsh.securedataplatform.co.uk/3ds/authentications/{authenticationId}
- Livehttps://access.worldpay-bsh.securedataplatform.co.uk/3ds/authentications/{authenticationId}
curl -i -X GET \
-u '<username>:<password>' \
'https://try.access.worldpay-bsh.securedataplatform.co.uk/3ds/authentications/{authenticationId}' \
-H 'WP-Api-Version: 2026-12-01'The authentication has been created
The latest outcome state for a given request authenticationId.
| Enum Value | Description |
|---|---|
| 3dsAuthenticated | Cardholder successfully authenticated by card issuer. |
| 3dsAttempted | 3DS attempted but card issuer not participating. Stand-in authentication by the scheme. |
| 3dsRejected | Issuer rejects the authentication, do not proceed with payment. |
| 3dsNotAuthenticated | Authentication failure by card issuer (system issue). |
| 3dsUnavailable | Authentication unavailable at this current time. |
| 3dsChallengeFailed | Failed cardholder challenge. |
| 3dsOutage | Issuer recognized outage. Can attempt authentication outage exemption. |
| 3dsBypassed | 3DS bypassed based on rules or recommendation from authentication optimization service. |
| 3dsExempted | Successful exemption in 3DS authentication. |
| 3dsAlreadyAuthenticated | The provided token is already SCA compliant. E.g. the google encrypted payload provided is 3DS_CRYPTOGRAM (authenticated) and not PAN_ONLY. |
| 3dsRedirect | 3DS hosted redirect Url provided by Worldpay for clientside interaction. |
Indicates the outcome of the authentication or verification request.
Y- Successful authenticationN- Failed authenticationU- Unable to complete authenticationA- Successful attempts authenticationC- Challenged authenticationR- Authentication rejected (merchant must not submit for authorization)I- Exemption acknowledged
Status of authentication eligibility.
Y- Bank is participating in 3DSN- Bank is not participating in 3DSU- The Directory Server (DS) or Access Control Server (ACS) were not available at the time of the requestB- Merchant authentication rule is triggered to bypass authentication (3DS premium only)
A cryptographic value that provides evidence of the outcome of a 3DS verification.
- Visa - Cardholder Authentication Verification Value (CAVV)
- Mastercard - Universal Cardholder Authentication Field (UCAF)
Commerce Indicator (ECI). Indicates the outcome of the 3DS authentication.
| ECI | Meaning |
|---|---|
| 02 or 05 | Fully Authenticated Transaction |
| 01 or 06 | Attempted Authentication Transaction |
| 00 or 07 | Non 3-D Secure Transaction |
| Scheme | Value |
|---|---|
| Mastercard | 02, 01, 00 |
| Visa | 05, 06, 07 |
| Amex | 05, 06, 07 |
| JCB | 05, 06, 07 |
| Diners | 05, 06, 07 |
Directory server transaction ID, if provided should be used in the payment authorization authentication object.
ACS transaction ID, if provided should be used in the payment authorization authentication object.
Indicates the algorithm used to generate the cryptogram. Returned for Cartes Bancaires authentications only and must be applied in the following authorization request.
Indicates the preferred challenge behavior. Returned for Cartes Bancaires authentications only and must be applied in the following authorization request.
noPreferencenoChallengeRequestedchallengeRequestedchallengeMandated
Indicates which flow the customer has been directed to. Returned for Cartes Bancaires authentications only and must be applied in the following authorization request.
Provides further information relating to the outcome of the authentication. Returned for failed authentications only. Returned for Cartes Bancaires authentications only.
An indicator as to why the authentication was cancelled. Returned for Cartes Bancaires authentications only.
01- Cardholder selected cancel02- Reserved for future use03- Authentication timed out04and05- Authentication timed out at ACS provider06- Transaction error07- Unknown08- Transaction timed out at SDK
The global score calculated by the Cartes Bancaires scoring platform. Returned for Cartes Bancaires authentications only.
The card brand used in the authentication. Returned for Cartes Bancaires authentications only and must be applied in the following authorization.
Successful frictionless authentication
{ "outcome": "3dsAuthenticated", "status": "Y", "enrolled": "Y", "version": "2.2.0", "authenticationValue": "MAAAAAAAAAAAAAAAAAAAAAAAAAA=", "eci": "05", "dsTransactionId": "c5b808e7-1de1-4069-a17b-f70d3b3b1645", "acsTransactionId": "fe007a6e-315f-4cdf-98ca-28a9e40e3581", "_links": { "self": { "href": "https://try.access.worldpay-bsh.securedataplatform.co.uk/3ds/authentications/LfC-Tuhv7J2nEw2m9ca_e" } } }