Skip to content

Risk Assess

Request

Used to check the level of risk before processing a transaction. Risk assessment returns four possible values: approve, deny, escalate and review. If the risk transaction is approved or review, you will be able to make a payment call with the risk assessment, risk id and transaction id you get in response.

Integration Methods:

  • Host Direct

See the Integration Methods and URLs Section sections of the Development Quick Start guide for details regarding each processing option.

See the JSON Body Schemas for more details on the various JSON body formats.

Security
AccessToken
Headers
InterfaceVersionstring, <= 11 charactersrequired

Refers to the version of the program or application that is sending requests to Shift4. The following special characters are not allowed: $ % : ^ - ~ < > , ? “ ” ‘ ’ { } [ ] \ + =

Example:2.1
InterfaceNamestring, <= 25 charactersrequired

Refers to the name of the program or application that is sending requests to Shift4. This should be the name of the program that you purchased or created. The following special characters are not allowed: $ % : ^ - ~ ` < > , ? “ ” ‘ ’ { } [ ] \ + =

Example:ForwardPOS
CompanyNamestring, <= 26 charactersrequired

Refers to the vendor or partner that designed and certified the interface. The information you use in this field should match what Shift4 has on file or what was agreed upon in your Integration Plan. The following special characters are not allowed: $ % : ^ - ~ ` < > , ? “ ” ‘ ’ { } [ ] \ + =

Example:PAWS
AccessTokenstring, (uuid), <= 52 charactersrequired

A security credential used to authenticate API requests and all i4Go® authorizeClient/preauthorizeClient requests. An Access Token is the alias for the merchant account and interface being used. The Access Token is required in all requests except an Access Token Exchange request, which generates an Access Token using an authToken and clientGuid.

Example:EA79FB05-3AA7-4500-AF9A-73F986FF2C1D
Bodyapplication/jsonrequired
One of:
dateTimestring, (ISO 8601)required

The date and time in ISO 8601 format including the timezone offset (yyyy-mm-ddThh:mm:ss.nnn+hh:mm).

Must be sent as the local date/time of the merchant. For example, a request processed at a merchant in the Pacific time zone at 9:18am on April 15th 2021 would be sent as 2021-04-15T09:18:23.283-07:00

Example:"2024-05-21T09:18:23.283-07:00"
cardobjectrequired
Example:
{ "type": "CC", "number": "342877777777705", "expirationDate": "1123,", "entryMode": "M", "present": "N" }
transactionobjectrequired
Example:
{ "toShip": "Y", "orderId": "orderId", "invoice": "0207123502", "vendorReference": "simulator1.0:0207123502" }
amountobjectrequired

Object containing information regarding the amount being requested. The total field within the object is required and specifies the amount being requested. All other fields are for informational purposes and must also be included in the total field. For example, a purchase of $100 with $8 tax would be “108.00” in the total field and "8.00" in the tax field.

Note: For merchants that are configured to allow multiple currencies, the amount fields can specify up to three decimal places. However, the number of decimal places can not exceed the number allowed for the specified currency. See the Currency Codes section for details.

Example:
{ "total": 76001.99 }
currencyCodestring, (ISO 4217 3 Character Alphabetic Code)required

Transaction currency code. See the Currency Codes section for details.

Note: This is currently supported when processing for a merchant outside of the US and Canada. If processing for a US or Canadian merchant then this field will be ignored and the transaction will process in the merchant's configured currency.

Example:"USD"
riskobjectrequired
Example:
{ "sessionId": "123420552ab34024b461455de4bcb482" }
sourceIpstringrequired

Public source IP Address where the request originates, not the IP Address of the web server.

Example:"63.57.84.101"
customerobject
Example:
{ "emailAddress": "firstname.lastname@email.com" }
shoppingCartArray of objects

Array of objects detailing the individual items being purchased

Example:
[ { "type": "Deodarant", "sku": "579446588", "description": "New Spice Fiji", "quantity": "5", "price": 4 }, { "type": "Toothbrush", "sku": "135488945", "description": "Electric Model", "quantity": "1", "price": 104.99 } ]
{ "dateTime": "2022-02-07T12:36:42.948061-05:00", "transaction": { "toShip": "Y", "orderId": "orderId", "invoice": "0207123502", "vendorReference": "simulator1.0:0207123502" }, "card": { "type": "CC", "number": "342877777777705", "expirationDate": "1123,", "entryMode": "M", "present": "N" }, "amount": { "total": 76001.99 }, "currencyCode": "USD", "risk": { "sessionId": "123420552ab34024b461455de4bcb482" }, "sourceIp": "10.249.11.239", "customer": { "emailAddress": "firstname.lastname@email.com" }, "shoppingCart'": [ { "type": "Deodarant", "description": "New Spice Fiji", "sku": "579446588", "quantity": "5", "price": 4 }, { "type": "Toothbrush", "description": "Electric Model", "sku": "135488945", "quantity": "1", "price": 104.99 } ] }

Responses

Risk assessment was processed

Bodyapplication/json
resultArray of objects
Response
{ "result": [ { "dateTime": "2021-04-15T09:18:23.283-07:00", "amount": { "total": 76001.99 }, "card": { "token": {} }, "merchant": { "mid": 15877, "name": "Merchant XYZ" }, "risk": { "tranId": "DDWT0P3LG6LL", "assessment": "A" }, "transaction": { "s4RiskId": "EC52377F-5A8E-4534-BE7A-CF779A35BE45", "invoice": "0207123502", "orderId": "orderId" } } ] }