In This Article:
- Overview
- Configuring Your Payment Gateway
- Payment Transaction Statuses
- When a Cancelled Payment Was Still Charged
- Refunds
- PCI-DSS and Genius CE & Enterprise
Overview
Payment Gateways are a third-party entity that sits between your instance of Genius CE or Enterprise and your financial institution. To learn more about e-commerce in Genius CE & Enterprise, please reference this article.
The most common payment gateways Genius CE & Enterprise clients use today are:
- Authorize.Net*
- Stripe*
- TouchNet *
- Square
- Xetta
- Cybersource*
- CashNet/Transact
- Catalis
- Nelnet Checkout*
- PayPal Checkout*
Your organization will typically choose the payment gateway it will use during the implementation of Genius CE or Enterprise.
Payment Gateways and Genius CE or Enterprise will typically talk ‘behind the scenes’ to send payee and credit card information from Genius CE or Enterprise to the Payment Gateway and to confirm that the payment was successful from the Payment Gateway back to Genius CE or Enterprise. Your learners will never leave the Genius CE or Enterprise environment when completing payments through the ‘Pay via Website’ option.
*These payment gateways support automated refunds.
Configuring your Payment Gateway
Step 1: Administration --> System Setup --> Payment Gateways
Step 2: Either configure an existing payment gateway listed or add a new payment gateway.
Step 3: If you are adding a new payment gateway, select the type you are looking to add, enter the information, and click "Save".
- Finance reports can be generated under the Reports tab for administrators under "Finance".
Payment Transaction Statuses
When a learner completes a payment through a connected gateway, Genius records the transaction in the learner's ledger and assigns it a status. Understanding these statuses helps administrators and support staff identify the correct state of a payment and determine whether action is needed.
When a Cancelled Payment Was Still Charged
In rare cases, a transaction may show as Cancelled in Genius while the payment gateway records the same transaction as settled. This can happen when a learner clicks Cancel on the payment processor's page, returns to the payment form, and completes the payment on a second attempt. Because Genius recorded the cancellation before the second payment was confirmed, the ledger may show Cancelled while the payment gateway shows the same transaction as settled.
Genius detects when a confirmed payment arrives for a transaction that was previously marked Cancelled and automatically updates the status to Completed. No action is required from admins or support.
Refunds
Because Genius does not store any credit card information and is not responsible for directly charging your customers’ credit or debit cards, Genius CE & Enterprise is typically unable to process refunds for your learners. If your learners seek a refund for their courses, you will have to initiate a refund request through the Payment Gateways you integrate with.
PCI-DSS and Genius CE & Enterprise
Even though Genius CE & Enterprise does not store your learners’ credit card information, this does not mean that we do not take the security of their financial information seriously. Genius CE & Enterprise has successfully obtained the PCI-DSS Level 1 certification for some of its clients, allowing us to offer a high standard of information security when it comes to protecting your learners’ financial information.
If you would like to know if your organization makes use of a PCI-DSS-compliant payment gateway, Visa maintains a list of PCI-DSS-compliant service providers, updated monthly, which is available here. The list details the service provider, validation date, services covered, assessor, and the regions covered.
In addition, Authorize.Net is audited yearly to confirm that it remains in compliance with the Payment Card Industry Data Security Standard (PCI DSS).
What is PCI-DSS?
The Payment Card Industry Data Security Standard (PCI DSS) is a proprietary information security standard for organizations that handle branded credit cards from the major card schemes including Visa, MasterCard, American Express, Discover, and JCB. The PCI Standard is mandated by the card brands and administered by the Payment Card Industry Security Standards Council. The standard was created to increase controls around cardholder data to reduce credit card fraud. Validation of compliance is performed annually, either by an external Qualified Security Assessor (QSA) that creates a Report on Compliance (ROC) for organizations handling large volumes of transactions or by a Self-Assessment Questionnaire (SAQ), applicable to companies handling smaller volumes.
A PCI-DSS-compliant solution has provided evidence that its platform meets the requirements by implementing strong, effective, and verifiable security controls that ensure that your learners’ financial information remains secure at all times.
Comments
0 comments
Article is closed for comments.